No Critical CVEs Addressed in February Patch TuesdayInfosecurity Magazine·Feb 9, 10:00 UTC · Feb 9, 2022Vulnerability in the wildCVE-2022-21989CVE-2022-22005CVE-2022-21999+3 CVEs60
SharePoint under fire: new ToolShell attacks target enterprisesSecurity Affairs·Jul 22, 16:13 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-49704CVE-2025-4970660
U.S. CISA adds Microsoft SharePoint flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 23, 13:50 UTC · Oct 23, 2024Exploit / PoC in the wildCVE-2024-3809460
AI-driven bug hunting fuels record Microsoft Patch TuesdayHelp Net Security·Jul 22, 10:08 UTC · Jul 22, 2026Vulnerability in the wildCVE-2026-56155CVE-2026-56164CVE-2026-50661+5 CVEs60
CISA Orders Urgent Patching After Chinese Hackers Exploit SharePoint Flaws in Live AttacksThe Hacker News·Jul 23, 13:04 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs60
After SharePoint attacks, Microsoft stops sharing PoC exploit code with ChinaSecurity Affairs·Aug 22, 09:12 UTC · Aug 22, 2025Exploit / PoC in the wild160
Details and PoC for critical SharePoint RCE flaw releasedHelp Net Security·Jul 21, 00:00 UTC · Jul 21, 2020Exploit / PoC in the wildCVE-2020-1350CVE-2020-114760
New Microsoft Exchange Vulnerability Puts Hybrid Cloud Environments atInfosecurity Magazine·Aug 7, 15:00 UTC · Aug 7, 2025Vulnerability in the wildCVE-2025-5378660
Week in review: Infostealer dropped via FortiClient EMS flaw, exploited Trend Micro Apex One flawHelp Net Security·May 31, 00:00 UTC · May 31, 2026Malware in the wildCVE-2026-45659CVE-2026-34926CVE-2026-3561660
Microsoft Patch Tuesday for May 2023 — Fewest vulnerabilities disclosed in a month in threeCisco Talos·May 9, 17:47 UTC · May 9, 2023Vulnerability in the wildCVE-2023-29336CVE-2023-24941CVE-2023-29325+7 CVEs60
Microsoft Patch Tuesday for July 2025 — Snort rules and prominent vulnerabilitiesCisco Talos·Jul 10, 14:45 UTC · Jul 10, 2025Vulnerability in the wildCVE-2025-49735CVE-2025-49704CVE-2025-49695+11 CVEs60
CISA adds Microsoft SharePoint bug disclosed at Pwn2Own to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 11, 21:44 UTC · Apr 11, 2024Exploit / PoC in the wildCVE-2023-24955CVE-2023-48788CVE-2021-44529+1 CVEs160
Microsoft Patch Tuesday for June 2025 — Snort rules and prominent vulnerabilitiesCisco Talos·Jun 10, 21:45 UTC · Jun 10, 2025Vulnerability in the wildCVE-2025-32717CVE-2025-32710CVE-2025-29828+11 CVEs160
Microsoft Patch Tuesday for January 2023 fixed actively exploited zeroSecurity Affairs·Jan 11, 08:05 UTC · Jan 11, 2023Vulnerability in the wildCVE-2023-21674CVE-2023-21549CVE-2023-21561+58 CVEs160
Only one critical vulnerability included in May’s Microsoft Patch Tuesday; One other zeroCisco Talos·May 14, 17:57 UTC · May 14, 2024Vulnerability in the wildCVE-2024-30044CVE-2024-29997CVE-2024-29998+9 CVEs60
What to know about ToolShell, the SharePoint threat under mass exploitationArs Technica · Security·Jul 23, 20:14 UTC · Jul 23, 2025Vulnerability in the wildCVE-2025-49706CVE-2025-4970460
U.S. CISA urges FCEB agencies to fix two Microsoft SharePoint flaws immediately and added them to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 23, 21:59 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-49704CVE-2025-49706CVE-2025-5377060
CISA Warns: Hackers Actively Attacking Microsoft SharePoint VulnerabilityThe Hacker News·Mar 28, 04:45 UTC · Mar 28, 2024Vulnerability in the wildCVE-2023-24955CVE-2023-2935760
Microsoft SharePoint zero-day attacks pinned on ChinaCyberScoop·Jul 22, 15:54 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49706+1 CVEs60
⚡ Weekly Recap: SharePoint 0-Day, Chrome Exploit, macOS Spyware, NVIDIA Toolkit RCE and MoreThe Hacker News·Jun 10, 04:47 UTC · Jun 10, 2026Vulnerability in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49704+36 CVEs60
April 2024 Patch Tuesday forecast: New and old from MicrosoftHelp Net Security·Apr 8, 00:00 UTC · Apr 8, 2024Vulnerability in the wildCVE-2024-2998860
Microsoft Patch Tuesday follows SharePoint attacks, Exchange server warningsCyberScoop·Aug 12, 20:21 UTC · Aug 12, 2025Vulnerability in the wildCVE-2025-53786CVE-2025-53770CVE-2025-53771+8 CVEs60
CISA, Microsoft warn organizations of high-severity Microsoft Exchange vulnerabilityCyberScoop·Aug 7, 15:36 UTC · Aug 7, 2025Vulnerability in the wildCVE-2025-53786160
Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilitiesCisco Talos·Jul 15, 14:52 UTC · Jul 15, 2026Vulnerability in the wildCVE-2026-56155CVE-2026-56164CVE-2026-50370+89 CVEs160
Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522)Help Net Security·Jul 22, 00:00 UTC · Jul 22, 2026Vulnerability in the wildCVE-2026-50522CVE-2026-56164CVE-2026-58644160
February 2019 Patch Tuesday: PrivExchange hole pluggedHelp Net Security·Feb 13, 00:00 UTC · Feb 13, 2019Vulnerability in the wildCVE-2019-7090CVE-2019-0686CVE-2019-0636+5 CVEs60
200 accounts compromised in Swiss government's Microsoft SharePoint breachHelp Net Security·Aug 7, 00:00 UTC · Aug 7, 2026Vulnerability in the wildCVE-2026-56164CVE-2026-5052260
U.S. CISA adds Microsoft SharePoint and Check Point SmartConsole flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 28, 08:02 UTC · Jul 28, 2026Exploit / PoC in the wildCVE-2026-16232CVE-2026-50522CVE-2026-5864460
Microsoft plugs actively exploited zero-day hole (CVE-2023-21674)Help Net Security·Jan 10, 00:00 UTC · Jan 10, 2023Exploit / PoC in the wildCVE-2023-21674CVE-2023-21549CVE-2023-21743+4 CVEs160
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0The Hacker News·Jul 21, 04:34 UTC · Jul 21, 2026Vulnerability in the wildCVE-2026-63030CVE-2026-60137CVE-2026-15409+26 CVEs160
Microsoft Issues Patches for SharePoint ZeroThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2023-20585CVE-2026-21637CVE-2026-25250+4 CVEs160
July 2026 CVE LandscapeRecorded Future·Aug 7, 00:00 UTC · Aug 7, 2026Ransomware in the wildCVE-2025-3248CVE-2008-4128CVE-2017-17215+78 CVEs160
Microsoft SharePoint Zero-DaySchneier on Security·Jul 28, 11:09 UTC · Jul 28, 2025Exploit / PoC in the wildCVE-2025-5377060
Microsoft Patch Tuesday for May 2025 — Snort rules and prominent vulnerabilitiesCisco Talos·May 13, 20:38 UTC · May 13, 2025Vulnerability in the wildCVE-2025-30397CVE-2025-32709CVE-2025-30400+16 CVEs60
Microsoft Patch Tuesday for April 2026 fixed actively exploited SharePoint zeroSecurity Affairs·Apr 15, 05:18 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-32201CVE-2026-33825CVE-2026-33827+1 CVEs60
Government Spooks Urge Firms to Patch SharePoint BugInfosecurity Magazine·Oct 19, 12:02 UTC · Oct 19, 2020Vulnerability in the wildCVE-2020-16952CVE-2019-060460
CISA adds Ivanti and Microsoft SharePoint bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 11, 15:33 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2024-21887CVE-2023-46805CVE-2023-2935760
Microsoft Patch Tuesday, June 2023 EditionKrebs on Security·Jun 15, 00:00 UTC · Jun 15, 2023Vulnerability in the wildCVE-2023-29357CVE-2023-32015CVE-2023-32014+3 CVEs60
Microsoft Fixes Four ZeroInfosecurity Magazine·Jul 10, 09:40 UTC · Jul 10, 2024Exploit / PoC in the wildCVE-2024-38080CVE-2024-38112CVE-2024-35264+6 CVEs60
Microsoft fixes critical flaws in Windows Kerberos, Hyper-V (CVE-2024-20674, CVE-2024-20700)Help Net Security·Jan 9, 00:00 UTC · Jan 9, 2024Vulnerability in the wildCVE-2024-20674CVE-2024-20700CVE-2024-21318+6 CVEs60