Microsoft
Microsoft Power Apps: vulnerabilidades y CVE
Microsoft Power Apps tiene 7 vulnerabilidades publicadas, 4 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses4
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-59118 | Crítica (9.3) | 0.72% | — | 7 ago 2026 | Improper authorization in Copilot Cowork allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2026-32172 | Alta (8) | 0.57% | — | 23 abr 2026 | Uncontrolled search path element in Microsoft Power Apps allows an unauthorized attacker to execute code over a network. |
| CVE-2026-26149 | Crítica (9) | 0.77% | — | 14 abr 2026 | Improper neutralization of escape, meta, or control sequences in Microsoft Power Apps allows an authorized attacker to perform spoofing over a network. |
| CVE-2026-20960 | Alta (8) | 0.53% | — | 16 ene 2026 | Improper authorization in Microsoft Power Apps allows an authorized attacker to execute code over a network. |
| CVE-2025-47733 | Alta (7.5) | 1.8% | — | 8 may 2025 | Server-Side Request Forgery (SSRF) in Microsoft Power Apps allows an unauthorized attacker to disclose information over a network |
| CVE-2023-32052 | Media (5.4) | 0.55% | — | 11 jul 2023 | Microsoft Power Apps (online) Spoofing Vulnerability |
| CVE-2023-32024 | Baja (3) | 1.5% | — | 14 jun 2023 | Microsoft Power Apps Spoofing Vulnerability |