KB5002908: what it fixes and who gets it

KB5002908 is a security update from Microsoft's September 2026 release for Microsoft SharePoint Server Subscription Edition.

Microsoft data read
16CVEs fixed
0rated Critical
0already exploited
Norestart required

Should you install it?

Yes. It is a routine security update; none of its fixes are rated Critical or reported as exploited. Windows Update installs it automatically on supported home PCs.

If the installation fails or the PC misbehaves afterwards, note the exact error code first: the fix depends on it. Our update troubleshooting guides are linked on this page.

Security fixes in KB5002908

CVETypeCVSSSeverity
CVE-2026-69268Microsoft Office SharePoint Remote Code Execution VulnerabilityRemote Code Execution8.8Important
CVE-2026-69273Microsoft Office SharePoint Remote Code Execution VulnerabilityRemote Code Execution8.8Important
CVE-2026-69282Microsoft Office SharePoint Remote Code Execution VulnerabilityRemote Code Execution8.8Important
CVE-2026-69464Microsoft Office SharePoint Elevation of Privilege VulnerabilityElevation of Privilege8.8Important
CVE-2026-69465Microsoft Office SharePoint Remote Code Execution VulnerabilityRemote Code Execution8.8Important
CVE-2026-69716Microsoft Office SharePoint Elevation of Privilege VulnerabilityElevation of Privilege8.8Important
CVE-2026-69724Microsoft Office SharePoint Remote Code Execution VulnerabilityRemote Code Execution8.8Important
CVE-2026-69804Microsoft Office SharePoint Remote Code Execution VulnerabilityRemote Code Execution7.5Important
CVE-2026-69402Microsoft Office SharePoint Spoofing VulnerabilitySpoofing7.3Important
CVE-2026-69417Microsoft Office SharePoint Spoofing VulnerabilitySpoofing7.3Important
CVE-2026-69409Microsoft Office SharePoint Information Disclosure VulnerabilityInformation Disclosure6.5Important
CVE-2026-69636Microsoft Office SharePoint Information Disclosure VulnerabilityInformation Disclosure6.5Important
CVE-2026-69683Microsoft Office SharePoint Information Disclosure VulnerabilityInformation Disclosure6.5Important
CVE-2026-69690Microsoft Office SharePoint Spoofing VulnerabilitySpoofing4.6Important
CVE-2026-69615Microsoft Office SharePoint Spoofing VulnerabilitySpoofing3.5Important
CVE-2026-69904Microsoft Office SharePoint Information Disclosure VulnerabilityInformation Disclosure3.5Important

Questions and experiences

Ask about this page: members and our editors answer. Reading is open; writing needs a free account.

0 comments

…

4,322 members already hereThey read, write, comment and vote. 0 verified · 31 joined this year

Cookies

We use essential cookies to run the platform. Analytics and marketing cookies are only turned on once you consent — you can change your choice at any time.