CVE-2026-45659
Microsoft SharePoint Server Code Execution via Deserialization
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
A vulnerability in Microsoft SharePoint Server allows an authorized attacker to execute code over a network by deserializing untrusted data. This could permit an attacker to compromise the affected system. The issue is considered externally exposed, meaning it is likely reachable via the internet.