VYPR

Power Apps

by Microsoft

CVEs (7)

  • CVE-2026-59118CriAug 7, 2026
    risk 0.60cvss 9.3epss 0.00

    Improper authorization in Copilot Cowork allows an unauthorized attacker to elevate privileges over a network.

  • CVE-2026-26149CriApr 14, 2026
    risk 0.59cvss 9.0epss 0.01

    Improper neutralization of escape, meta, or control sequences in Microsoft Power Apps allows an authorized attacker to perform spoofing over a network.

  • CVE-2025-47733CriMay 8, 2025
    risk 0.59cvss 9.1epss 0.02

    Server-Side Request Forgery (SSRF) in Microsoft Power Apps allows an unauthorized attacker to disclose information over a network

  • CVE-2026-32172HigApr 23, 2026
    risk 0.52cvss 8.0epss 0.00

    Uncontrolled search path element in Microsoft Power Apps allows an unauthorized attacker to execute code over a network.

  • CVE-2026-20960HigJan 16, 2026
    risk 0.52cvss 8.0epss 0.00

    Improper authorization in Microsoft Power Apps allows an authorized attacker to execute code over a network.

  • CVE-2023-32052MedJul 11, 2023
    risk 0.35cvss 5.4epss 0.01

    Microsoft Power Apps (online) Spoofing Vulnerability

  • CVE-2023-32024LowJun 14, 2023
    risk 0.20cvss 3.0epss 0.01

    Microsoft Power Apps Spoofing Vulnerability