Vulnerability Bulletins

CVE-2026-20947

   
Affected software MICROSOFT
 
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-20947