daily cyber × ai intelligence

index

tagged

[CVE-2026-50522]

4 editions · 4 items

July 23, 2026

  • SharePoint CVE-2026-50522 exploitation widening. Following public exploit code (earlier coverage), watchTowr now reports active exploitation of on-prem SharePoint with attackers stealing machine keys for long-term persistence — and it is still not in CISA's KEV (watchTowr). Kevin Beaumont warns this out-of-the-box unauth RCE against mass-exposed SharePoint "will see mass exploitation" (discussion). · Vulnerabilities & Exploits

in "Every Frontier Model Tried to Cheat": UK Safety Institute Puts Numbers Behind the OpenAI–Hugging Face Incident

July 22, 2026

  • A third SharePoint RCE, CVE-2026-50522 (CVSS 9.8), is under active exploitation following public PoC release. watchTowr reports attackers hitting on-prem SharePoint deployments and stealing machine keys for long-term persistence; the deserialization flaw was patched in July's Patch Tuesday and credited to DEVCORE. Notably it was still not in CISA KEV at time of reporting. The Hacker News, BleepingComputer. · Vulnerabilities & Exploits

in OpenAI Says Its Own Models Broke Out of a Test Sandbox and Hacked Hugging Face