Habari Installation Path Disclosure Vulnerability
More information on the flaws can be found here.
Aug 3, 2011By Veerendra GG1 min read
More information on the flaws can be found here.
Learn Search
More information on the flaws can be found here.
More information on the flaws can be found here.

CVE Research
A critical SharePoint deserialization flaw, CVE-2026-50522 (CVSS 9.8), is under active exploitation just weeks after its July 2026 patch, following a public PoC. Attackers are using it to steal IIS machine keys in a single request, gaining persistence that survives patching alone. Now on CISA's KEV list, it's the third actively exploited SharePoint flaw in recent months, patch immediately and rotate machine keys.