Last updated on March 25, 2026 at 11:13 am

We’re aware of a global issue affecting Microsoft SharePoint services, which could allow a remote unauthenticated attacker to access your server.

Systems impacted:

  • Microsoft SharePoint Enterprise Server 2016 – 16.0.0 to 16.0.5535.1001
  • Microsoft SharePoint Server 2019 – 16.0.0 to 16.0.10417.20083
  • Microsoft SharePoint Server Subscription Edition – 16.0.0 to 16.0.19127.20442

Recommendation:

  • Upgrade to the latest Microsoft SharePoint server versions.
  • If you are unable to upgrade, isolate the SharePoint server from the internet

For more information about the vulnerability, please refer to this website.