Rapid7 and Microsoft Patch AI-Assisted SharePoint RCE Chain
Rapid7 and Microsoft disclosed CVE-2026-63520 on August 11, completing a two-vulnerability SharePoint Server chain that can reach unauthenticated remote code execution when paired with July's CVE-2026-55040 authentication bypass. The new flaw carries a CVSS score of 8.1, and Microsoft published fixes for supported on-premises SharePoint editions.
Rapid7 and Microsoft disclosed CVE-2026-63520 on August 11, the second half of a two-vulnerability chain against on-premises Microsoft SharePoint Server. Microsoft describes the new issue as improper input validation that can let an unauthorized attacker execute code over a network. Its CVSS 3.1 score is 8.1, rated High.
Two bugs create the unauthenticated path
The chain begins with CVE-2026-55040, a SharePoint authentication bypass disclosed and patched in July. Rapid7 found that the first flaw could let a remote unauthenticated attacker assume the identity of a known SharePoint user, including an administrator, using an Active Directory identifier such as a SID or user principal name. Microsoft now rates that bypass Critical at 9.1.
CVE-2026-63520 supplies the code-execution step. Microsoft says it requires no privileges or user interaction, although its CVSS vector marks attack complexity as high. Chaining the July bypass with the newly disclosed RCE removes the normal authentication barrier and produces the unauthenticated code-execution path Rapid7 originally reported to Microsoft in May.
Microsoft lists SharePoint Enterprise Server 2016, SharePoint Server 2019 and SharePoint Server Subscription Edition as affected below the fixed August builds. The vendor record marked exploit-code maturity as unproven when published, so the disclosure establishes a working researcher-developed chain, not confirmed exploitation in the wild.
AI accelerated the research, not the proof standard
Rapid7 says its project mixed manual code review and reverse engineering with an AI agent. Across two research sprints, the team logged 24 active days of agentic work, 96 sessions, 256 prompts and about 80,000 tool calls. The January sprint produced no usable finding; a second sprint in March yielded the two-bug chain after researchers changed models and workflows.
That sequence matters for security teams evaluating AI-assisted vulnerability research: automation expanded the search effort, but coordinated disclosure, reproducible exploitation and vendor validation still established the result. For SharePoint operators, the immediate issue is simpler: verify that every supported on-premises server has both the July authentication-bypass fix and the August build that addresses CVE-2026-63520.
Key Points
- 1CVE-2026-63520 is an 8.1-rated SharePoint Server RCE disclosed on August 11 and patched across supported on-premises editions.
- 2Combined with July's 9.1-rated CVE-2026-55040 authentication bypass, the flaw creates an unauthenticated remote-code-execution chain.
- 3Rapid7 reports that AI-assisted research used 24 active days, 96 sessions, 256 prompts and roughly 80,000 agent tool calls across two sprints.
- 4Microsoft's publication marked exploit-code maturity unproven; the public evidence supports a researcher-developed chain, not known in-the-wild exploitation.
Scoring Rationale
A patched but high-impact two-bug chain reaches unauthenticated code execution on supported on-premises SharePoint servers. The disclosure is immediately actionable for defenders and also documents a substantial AI-assisted research workflow, while the absence of confirmed exploitation limits the score.
Sources
Primary source and supporting public references used for this report.
Practice interview problems based on real data
1,625 SQL & Python problems across 15 industry datasets — the exact type of data you work with.
Try 250 free problems