Server-Side Request Forgery in Microsoft Office SharePoint
CVE-2025-53760
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 12 August 2025
What is CVE-2025-53760?
A server-side request forgery vulnerability in Microsoft Office SharePoint exists that allows an authorized attacker to make unauthorized requests and potentially elevate privileges on a network. This exploit can be leveraged to manipulate server configurations and gain access to sensitive information, making it crucial for organizations to apply security patches and follow best practices in network security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Microsoft SharePoint Enterprise Server 2016 x64-based Systems 16.0.0 < 16.0.5513.1002
Microsoft SharePoint Server 2019 x64-based Systems 16.0.0 < 16.0.10417.20041
Microsoft SharePoint Server Subscription Edition x64-based Systems 16.0.0 < 16.0.18526.20518
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved