CyberHighConfirmedAccelerating
10.0
Critical pre-authentication sandbox escape vulnerability identified in ServiceNow AI platform
The Hacker News·2 days ago
Threat actors are actively exploiting CVE-2026-50522, a critical remote code execution vulnerability in Microsoft SharePoint, to extract machine keys and maintain persistence. Security researchers warn that patching alone is insufficient if the server was compromised prior to the update, as attackers may have already established backdoors. This marks the third SharePoint vulnerability exploited in July 2026, highlighting a significant escalation in targeting of the platform.