hacker-news · Crawled Sep 26, 2026
SharePoint RCE and MikroTik RouterOS Flaws Actively Exploited in the Wild
Read original article ↗AI Summary
CISA has added two vulnerabilities to its Known Exploited Vulnerabilities catalog due to active in-the-wild exploitation. CVE-2026-65660 is a code injection flaw in Microsoft Office SharePoint that allows authenticated attackers to achieve remote code execution, which Microsoft initially classified as a spoofing issue. The second vulnerability, CVE-2026-67279, affects MikroTik RouterOS and enables unauthenticated attackers to open a session channel, which when combined with CVE-2026-86060 (an argument injection flaw), forms the 'MikroTrick' exploit chain allowing full administrative takeover of vulnerable routers without credentials.
AI-extracted · verify before operational use
No entities or IoCs were extracted from this article.