🟠 High | Source: Microsoft Security Response Center
A vulnerability in Microsoft SharePoint Server allows an already-authenticated attacker to gain higher-level privileges than they should have, purely over the network. This is concerning because it lowers the bar for an insider threat or a compromised account to cause significantly more damage. Organisations running SharePoint Server on-premises or in hybrid configurations should treat this as an urgent patching priority.
Security Architect’s Take: Apply the relevant Microsoft security update immediately, particularly for any SharePoint Server instances exposed to internal networks or the internet. In the interim, review and restrict SharePoint permissions to least-privilege and monitor audit logs for unexpected privilege changes or unusual administrative activity.
Original advisory: CVE-2026-62827 Microsoft SharePoint Server Elevation of Privilege Vulnerability