{"resultsPerPage":4,"startIndex":0,"totalResults":4,"format":"NVD_CVEHistory","version":"2.0","timestamp":"2026-09-22T19:29:09.617","cveChanges":[{"change":{"cveId":"CVE-2026-65660","eventName":"New CVE Received","cveChangeId":"BF5B50CF-9862-4634-8A8D-51E3CF51E5DF","sourceIdentifier":"secure@microsoft.com","created":"2026-08-11T17:18:54.080","details":[{"action":"Added","type":"Description","newValue":"Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network."},{"action":"Added","type":"CVSS V3.1","newValue":"AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:H\/I:N\/A:N"},{"action":"Added","type":"CWE","newValue":"CWE-94"},{"action":"Added","type":"Affected","newValue":"New affected value received.  <a href=\"https:\/\/github.com\/CVEProject\/cvelistV5\/blob\/main\/cves\/2026\/65xxx\/CVE-2026-65660.json\">CVE-2026-65660<\/a>"},{"action":"Added","type":"Reference","newValue":"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2026-65660"}]}},{"change":{"cveId":"CVE-2026-65660","eventName":"CVE Modified","cveChangeId":"967EFD21-065C-407A-BA65-1685C8C6911C","sourceIdentifier":"134c704f-9b21-4f2e-91b3-4a467353bcc0","created":"2026-08-11T21:17:46.080","details":[{"action":"Added","type":"SSVC","newValue":{"timestamp":"2026-08-11T20:38:18.942475Z","id":"CVE-2026-65660","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]}},{"change":{"cveId":"CVE-2026-65660","eventName":"Initial Analysis","cveChangeId":"EF06E0D4-BAC0-41F6-A93A-6F5EB947CA07","sourceIdentifier":"nvd@nist.gov","created":"2026-08-13T13:39:50.140","details":[{"action":"Added","type":"CPE Configuration","newValue":"OR\n          *cpe:2.3:a:microsoft:sharepoint_server:2019:*:*:*:*:*:*:*\n          *cpe:2.3:a:microsoft:sharepoint_server:2016:*:*:*:enterprise:*:*:*\n          *cpe:2.3:a:microsoft:sharepoint_server:*:*:*:*:subscription:*:*:* versions up to (excluding) 16.0.19725.20522"},{"action":"Added","type":"Reference Type","newValue":"Microsoft Corporation: https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2026-65660 Types: Patch, Vendor Advisory"}]}},{"change":{"cveId":"CVE-2026-65660","eventName":"CVE Modified","cveChangeId":"13291AFF-8310-41AA-9194-9E876BCE76F3","sourceIdentifier":"secure@microsoft.com","created":"2026-08-27T20:18:23.033","details":[{"action":"Changed","type":"Description","oldValue":"Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.","newValue":"Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network."},{"action":"Added","type":"CVSS V3.1","newValue":"AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:H\/I:H\/A:H"},{"action":"Removed","type":"CVSS V3.1","oldValue":"AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:H\/I:N\/A:N"},{"action":"Added","type":"Reference","newValue":"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2026-65660"},{"action":"Removed","type":"Reference","oldValue":"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2026-65660"},{"action":"Removed","type":"Reference Type","oldValue":"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2026-65660 Types: Patch, Vendor Advisory"}]}}]}