Microsoft Patches Exploited SharePoint Zero-Day and Over 160 Vulnerabilities in April Update

Microsoft has released its April 2026 Patch Tuesday update, addressing more than 160 security vulnerabilities across its software ecosystem, including an actively exploited zero-day flaw in SharePoint Server.

The most critical issue fixed is a SharePoint Server vulnerability tracked as CVE-2026-32201, which has already been exploited in real-world attacks. The flaw is classified as a spoofing vulnerability caused by improper input validation, allowing attackers to impersonate trusted entities, potentially access sensitive information, and manipulate data.

Despite being rated as “Important” with a CVSS score of 6.5, the vulnerability is considered high-risk due to active exploitation. It has already been added to the U.S. Cybersecurity and Infrastructure Security Agency’s (CISA) Known Exploited Vulnerabilities catalog, with federal agencies instructed to apply patches urgently.

In total, Microsoft addressed over 160 flaws, including multiple critical vulnerabilities such as remote code execution (RCE) and elevation of privilege issues. Security experts have described this update as one of the largest in recent history, highlighting the increasing complexity of modern cyber threats.

The vulnerabilities span a wide range of Microsoft products, including Windows, Office, Defender, and SharePoint, with elevation of privilege flaws accounting for a significant portion of the patches.

Experts have urged organizations to prioritize patching immediately, especially for internet-facing SharePoint servers, as such vulnerabilities are frequently targeted by attackers and can be chained with other exploits for deeper system compromise.

The update underscores the growing scale and urgency of cybersecurity risks, particularly as widely used enterprise platforms continue to be prime targets for sophisticated and large-scale attacks.
- Advertisement -

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest Articles

error: Content is protected !!

Share your details to download the report 2026

Share your details to download the Cybersecurity Report 2025

Share your details to download the CISO Handbook 2025

Sign Up for CXO Digital Pulse Newsletters

Share your details to download the Research Report

Share your details to download the Coffee Table Book

Share your details to download the Vision 2023 Research Report

Download 8 Key Insights for Manufacturing for 2023 Report

Sign Up for CISO Handbook 2023

Download India’s Cybersecurity Outlook 2023 Report

Unlock Exclusive Insights: Access the article

Download CIO VISION 2024 Report

Share your details to download the report

Share your details to download the CISO Handbook 2024

Fill your details to Watch