Improper authorization in Microsoft Power Apps allows an authorized attacker to execute code over a network.
CVE-2026-20960 Microsoft Power Apps Remote Code Execution Vulnerability
Published January 16, 2026
Published January 16, 2026
Improper authorization in Microsoft Power Apps allows an authorized attacker to execute code over a network.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.