Remote Code Execution Vulnerability in Microsoft Office SharePoint
CVE-2026-26106
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 10 March 2026
What is CVE-2026-26106?
A vulnerability exists in Microsoft Office SharePoint due to improper input validation. This flaw enables an authorized attacker to execute malicious code over a network, potentially compromising system integrity and security. Organizations using affected versions should apply the provided patches to mitigate risks and protect sensitive data.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Microsoft SharePoint Enterprise Server 2016 x64-based Systems 16.0.0 < 16.0.5543.1000
Microsoft SharePoint Server 2019 x64-based Systems 16.0.0 < 16.0.10417.20102
Microsoft SharePoint Server Subscription Edition x64-based Systems 16.0.0 < 16.0.19725.20076
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved