CVE-2024-38190: Microsoft Power Platform

High severity, CVSS 8.6. EPSS: 1.1% chance of exploitation in the next 30 days.

Missing authorization in Power Platform allows an unauthenticated attacker to view sensitive information through a network attack vector.

Affected products

  • Microsoft Power Platform: affected versions not specified

Published 2024-10-15. Last modified 2026-06-17.