🕳️ Vulnerabilities & CVEs

[Exploited] Microsoft Patches SharePoint Zero-Day + 164 Flaws

A hacker's cursor hovers over a SharePoint login, unseen doors cracking open. Microsoft's latest patches slam shut a zero-day that's already drawing blood in the wild.

Microsoft Patch Tuesday alert screen showing SharePoint zero-day fix

⚡ Key Takeaways

  • Microsoft patched 165 vulnerabilities, led by exploited SharePoint zero-day CVE-2026-32201. 𝕏
  • CISA added the flaw to KEV; federal agencies must patch by April 28. 𝕏
  • 19 other vulns flagged 'exploitation more likely,' hitting Windows core components. 𝕏
  • Second-largest Patch Tuesday ever—echoes Log4Shell scale. 𝕏
  • AI code generation may be accelerating such flaw volumes. 𝕏
Maya Thompson
Written by

Maya Thompson

Threat intelligence reporter. Tracks CVEs, ransomware groups, and major breach investigations.

Worth sharing?

Get the best Cybersecurity stories of the week in your inbox — no noise, no spam.

Originally reported by SecurityWeek

Stay in the loop

The week's most important stories from CVE Watch, delivered once a week.