Microsoft Sharepoint Server Security Update Advisory (CVE-2025-53770)
Overview
We have released a security update to address a vulnerability in Microsoft Sharepoint Server. Affected product users are advised to update to the latest version.
Affected Products
CVE-2025-53770
Microsoft SharePoint Server Subscription Edition: All Editions
Microsoft SharePoint Server 2019 Editions: All Editions
Microsoft SharePoint Enterprise Server 2016 Edition: All Editions
Resolved Vulnerabilities
Remote code execution vulnerability due to deserialization of untrusted data in Microsoft SharePoint Server (CVE-2025-53770)
Vulnerability Patches
Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-53770
Microsoft SharePoint Server Subscription Edition : KB5002768
Microsoft SharePoint Server 2019 Edition : KB5002754
Microsoft SharePoint Server 2019 Edition : KB5002753
Microsoft SharePoint Enterprise Server 2016 Edition : KB5002760
Microsoft SharePoint Enterprise Server 2016 Edition : KB5002759
References
[1] Customer guidance for SharePoint vulnerability CVE-2025-53770
https://msrc.microsoft.com/blog/2025/07/customer-guidance-for-sharepoint-vulnerability-cve-2025-53770/
[2] Microsoft SharePoint Server Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-53770