CVE-2026-20963 Analysis
blog.viettelcybersecurity.com | vulnerability | CVE-2026-20963 | #rce | #sharepoint | #patch-analysis | #safecontrols | #cve-2026-20963 | #register-directive
Summary
CVE-2026-20963: inconsistently normalized TagPrefix values in Register Directives let HTML-encoded whitespace slip past SharePoint SafeControls validation; fixed in the KB5002825 update.
- Published
- Collected
Skip to content