Zero Day Room
Live

Defence

control and hardening hub

SharePoint Authentication Bypass Exploited After PoC Release
Defence

SharePoint Authentication Bypass Exploited After PoC Release

Threat actors are actively exploiting a critical SharePoint vulnerability (CVE-2026-55040) after a proof-of-concept exploit was publicly released. The flaw allows unauthenticated attackers to bypass authentication and impersonate users, enabling file disclosure and data modification.

The Hacker News16 August 2026