
CISA Adds Microsoft SharePoint Weak Authentication Vulnerability to KEV List
CISA added a critical Microsoft SharePoint authentication flaw to its KEV catalog after CVE-2026-55040 was confirmed in active exploitation, urging organizations to secure affected on-premises environments. CVE-2026-55040 is a weakness in Microsoft SharePoint’s authentication handling that can allow an unauthenticated attacker to bypass a security feature remotely. The issue is associated with CWE-1390, which covers […]
The post CISA Adds Microsoft SharePoint Weak Authentication Vulnerability to KEV List appeared first on Cyber Security News.