CVE-2026-40374
EUVD-2026-2965312.05.2026, 18:17
Exposure of sensitive information to an unauthorized actor in Power Automate allows an authorized attacker to disclose information over a network.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microsoft | power_automate_for_desktop | 𝑥 < 2.67 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration