CVE Tools

Sharepoint Server

594 CVEs tracked. 20 of them are in CISA KEV.

This hub aggregates every CVE we track for Sharepoint Server, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.

Sharepoint Server CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Sharepoint Server CVEs per month
MonthCVEs
2024-101
2024-110
2024-125
2025-013
2025-021
2025-030
2025-045
2025-054
2025-065
2025-076
2025-084
2025-093
2025-106
2025-111
2025-125
2026-017
2026-022
2026-033
2026-042
2026-058
2026-0631
2026-0740
2026-0829
2026-0916

Severity

How the 594 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical427%
  • High30251%
  • Medium23840%
  • Low122%

Latest CVEs

The 15 most recently published vulnerabilities affecting Sharepoint Server.

  1. CVE-2026-69465Microsoft Office SharePoint Remote Code Execution Vulnerability8.8
  2. CVE-2026-69904Microsoft Office SharePoint Information Disclosure Vulnerability3.5
  3. CVE-2026-69636Microsoft Office SharePoint Information Disclosure Vulnerability6.5
  4. CVE-2026-69615Microsoft Office SharePoint Spoofing Vulnerability3.5
  5. CVE-2026-69464Microsoft Office SharePoint Elevation of Privilege Vulnerability8.8
  6. CVE-2026-69417Microsoft Office SharePoint Spoofing Vulnerability7.3
  7. CVE-2026-69409Microsoft Office SharePoint Information Disclosure Vulnerability6.5
  8. CVE-2026-69402Microsoft Office SharePoint Spoofing Vulnerability7.3
  9. CVE-2026-69282Microsoft Office SharePoint Remote Code Execution Vulnerability8.8
  10. CVE-2026-69273Microsoft Office SharePoint Remote Code Execution Vulnerability8.8
  11. CVE-2026-69268Microsoft Office SharePoint Remote Code Execution Vulnerability8.8
  12. CVE-2026-69804Microsoft Office SharePoint Remote Code Execution Vulnerability7.5
  13. CVE-2026-69683Microsoft Office SharePoint Information Disclosure Vulnerability6.5
  14. CVE-2026-69690Microsoft Office SharePoint Spoofing Vulnerability4.6
  15. CVE-2026-69724Microsoft Office SharePoint Remote Code Execution Vulnerability8.8

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store