Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 29 Apr 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft power Apps
|
|
| CPEs | cpe:2.3:a:microsoft:power_apps:-:*:*:*:*:-:*:* | |
| Vendors & Products |
Microsoft power Apps
|
Fri, 24 Apr 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Apr 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Uncontrolled search path element in Microsoft Power Apps allows an unauthorized attacker to execute code over a network. | |
| Title | Microsoft Power Apps Remote Code Execution Vulnerability | |
| First Time appeared |
Microsoft
Microsoft power-apps |
|
| Weaknesses | CWE-427 | |
| CPEs | cpe:2.3:a:microsoft:power-apps:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft power-apps |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-05-12T17:39:56.182Z
Reserved: 2026-03-10T23:09:43.266Z
Link: CVE-2026-32172
Updated: 2026-04-24T14:55:06.909Z
Status : Analyzed
Published: 2026-04-23T22:16:33.720
Modified: 2026-04-29T19:11:12.690
Link: CVE-2026-32172
No data.
OpenCVE Enrichment
Updated: 2026-04-28T07:30:26Z