CVE-2026-70321
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVSS
8.8
High
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Aug 11, 2026 · Last modified: Aug 11, 2026 · CWE-502
Not enough EPSS history yet.
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-668088.8 HIG—
———Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.5hCVE-2026-668058.8 HIG—
———Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.5hCVE-2026-658158.8 HIG—
———Deserialization of untrusted data in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code over a network.5hCVE-2026-656658.8 HIG—
———Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.5hCVE-2026-656638.8 HIG—
———Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.5hCVE-2026-656588.8 HIG—
———Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.5h