
SecuritySharePoint Enterprise Server 2016
CISA: SharePoint RCE Flaw CVE-2026-45659 Now Actively Exploited
CISA has added a high-severity Microsoft SharePoint deserialization flaw, CVE-2026-45659, to its Known Exploited Vulnerabilities catalog after confirming active exploitation, and later flagged it as used in ransomware attacks against on-premises SharePoint Server deployments.

