Active Deserialization Exploitation: SharePoint RCE (CVE-2026-50522) Leads to ASP.NET MachineKey Theft
Executive Summary
A critical remote code execution (RCE) vulnerability in on-premises Microsoft SharePoint Server, tracked as CVE-2026-50522 (CVSS score 9.8), has come under activ...