CVE-2026-77897
7
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Summary
Relative path traversal in Power Automate allows an authorized attacker to elevate privileges locally.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Power Automate agent for virtual desktops | 1.0.0.0 < 2.71.115.26224 | affected |
| Microsoft | Power Automate for Desktop | 1.0.0.0 < 2.71.115.26224 | affected |
Weaknesses
- CWE-23: CWE-23: Relative Path Traversal
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.