CVE-2026-45659: the SharePoint flaw CISA put on KEV and Storm-2603 uses for Warlock
CISA added CVE-2026-45659 to KEV on 1 July: a SharePoint on-premises RCE that Storm-2603 abuses to deploy Warlock ransomware. What to detect and how to respond.
By Thilina Manana · COO, Director Técnico de Seguridad hard2bit y socio fundador