Vulnerabilities > Microsoft > Power Platform

DATE CVE VULNERABILITY TITLE RISK
2024-10-15 CVE-2024-38190 Missing Authorization vulnerability in Microsoft Power Platform
Missing authorization in Power Platform allows an unauthenticated attacker to view sensitive information through a network attack vector.
network
low complexity
microsoft CWE-862
8.6
2024-06-27 CVE-2024-35260 Unspecified vulnerability in Microsoft Power Platform
An authenticated attacker can exploit an untrusted search path vulnerability in Microsoft Dataverse to execute code over a network.
network
low complexity
microsoft
critical
9.8
2023-12-12 CVE-2023-36019 Unspecified vulnerability in Microsoft Azure Logic Apps and Power Platform
Microsoft Power Platform Connector Spoofing Vulnerability
network
low complexity
microsoft
7.4