← Back to feed
vendor Rapid7 Blog

CVE-2026-55040: Microsoft SharePoint JWT Token Authentication Bypass (FIXED)

Rapid7 Blog Microsoft

Overview Rapid7 Labs conducted a zero-day research project against Microsoft SharePoint, resulting in the discovery of two new vulnerabilities that, when cha...

T1190 T1556 1 IOC
Read the full story Rapid7 Blog →

Related Coverage

vendor PSA: Critical Unauthenticated Path Traversal Vulnerability Patched in WordPress Core Wordfence Blog · Sep 22 vendor Unmasking EvilTokens: Getting to the root of device code phishing Microsoft Security Blog · Sep 22 vendor Inside a Malicious, Stealthy WordPress Must Use Plugin Wordfence Blog · Sep 22