Skip to main content

Vendor/product archive

microsoft / power_apps CVEs

Beta · best-effort

6 CVEs tagged to microsoft / power_apps2 Critical, 2 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2026-32172

Published Apr 23, 2026

Uncontrolled search path element in Microsoft Power Apps allows an unauthorized attacker to execute code over a network.

CVSS 8.0 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-26149

Published Apr 14, 2026

Improper neutralization of escape, meta, or control sequences in Microsoft Power Apps allows an authorized attacker to perform spoofing over a network.

CVSS 9.0 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2026-20960

Published Jan 16, 2026

Improper authorization in Microsoft Power Apps allows an authorized attacker to execute code over a network.

CVSS 8.0 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-47733

Published May 8, 2025

Server-Side Request Forgery (SSRF) in Microsoft Power Apps allows an unauthorized attacker to disclose information over a network

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1