Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-20963 Microsoft SharePoint Remote Code Execution Vulnerability
Published January 14, 2026
Published January 14, 2026
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.