Critical
CVSS: 9.8
Exposure of sensitive information to an unauthorized actor in Power Automate allows an unauthorized attacker to elevate privileges over a network.
Medium
CVSS: 5.7
Uncontrolled search path element in Power Automate allows an authorized attacker to disclose information over a network.
High
CVSS: 7.8
Microsoft Power Automate Remote Code Execution Vulnerability