Cross-Site Scripting Vulnerability in Microsoft Office SharePoint
CVE-2026-69615
3.5LOW
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 8 September 2026
What is CVE-2026-69615?
A cross-site scripting vulnerability in Microsoft Office SharePoint allows an authorized attacker to inject malicious scripts into web pages viewed by users. This could lead to spoofed requests and unauthorized access, compromising the integrity of user interactions and sensitive information within the SharePoint environment.
Affected Version(s)
Microsoft SharePoint Server Subscription Edition x64-based Systems 16.0.0 < 16.0.20326.20090