Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
- EPSS 0.27%
- Veröffentlicht 08.09.2026 17:19:11
- Zuletzt bearbeitet 29.09.2026 19:42:55
Relative path traversal in Power Automate allows an authorized attacker to elevate privileges locally.
9.9
CVE-2026-65818
- EPSS 0.33%
- Veröffentlicht 03.09.2026 22:59:17
- Zuletzt bearbeitet 08.09.2026 17:51:16
Server-side request forgery (ssrf) in Power Automate allows an authorized attacker to elevate privileges over a network.
6.5
CVE-2026-40374
- EPSS 0.87%
- Veröffentlicht 12.05.2026 16:58:40
- Zuletzt bearbeitet 19.05.2026 18:04:59
Exposure of sensitive information to an unauthorized actor in Power Automate allows an authorized attacker to disclose information over a network.
9.8
CVE-2025-47966
- EPSS 1.06%
- Veröffentlicht 05.06.2025 20:59:02
- Zuletzt bearbeitet 08.07.2025 16:26:34
Exposure of sensitive information to an unauthorized actor in Power Automate allows an unauthorized attacker to elevate privileges over a network.
5.7
CVE-2025-29817
- EPSS 0.83%
- Veröffentlicht 15.04.2025 16:10:04
- Zuletzt bearbeitet 08.07.2025 16:26:03
Uncontrolled search path element in Power Automate allows an authorized attacker to disclose information over a network.
8.5
CVE-2024-43479
- EPSS 0.88%
- Veröffentlicht 10.09.2024 17:15:35
- Zuletzt bearbeitet 10.08.2026 16:19:11
Microsoft Power Automate Desktop Remote Code Execution Vulnerability
1