Microsoft Sharepoint Server Security Update Advisory (CVE-2025-53770)

Microsoft Sharepoint Server Security Update Advisory (CVE-2025-53770)

Overview

 

We have released a security update to address a vulnerability in Microsoft Sharepoint Server. Affected product users are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-53770

 

Microsoft SharePoint Server Subscription Edition: All Editions
Microsoft SharePoint Server 2019 Editions: All Editions
Microsoft SharePoint Enterprise Server 2016 Edition: All Editions

 

 

Resolved Vulnerabilities

 

Remote code execution vulnerability due to deserialization of untrusted data in Microsoft SharePoint Server (CVE-2025-53770)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2025-53770

 

Microsoft SharePoint Server Subscription Edition : KB5002768
Microsoft SharePoint Server 2019 Edition : KB5002754
Microsoft SharePoint Server 2019 Edition : KB5002753
Microsoft SharePoint Enterprise Server 2016 Edition : KB5002760
Microsoft SharePoint Enterprise Server 2016 Edition : KB5002759

 

 

References

 

[1] Customer guidance for SharePoint vulnerability CVE-2025-53770
https://msrc.microsoft.com/blog/2025/07/customer-guidance-for-sharepoint-vulnerability-cve-2025-53770/
[2] Microsoft SharePoint Server Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-53770