Microsoft released emergency security patches for two actively exploited SharePoint vulnerabilities, CVE-2025-53770 (remote code execution) and CVE-2025-53771 (spoofing). CVE-2025-53770, with a CVSS score of 9.8, is being actively exploited, prompting immediate action. The flaws affect on-premises SharePoint servers only, not SharePoint Online. Microsoft urges users to apply updates, enable AMSI, rotate ASP.NET machine keys, and consider disconnecting from the internet temporarily. Multiple cybersecurity firms report widespread attacks targeting various sectors.
Prepared by Jonathan Pierce and reviewed by editorial team.
Comments