Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 11 Aug 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper authorization in Microsoft Power Apps allows an unauthorized attacker to elevate privileges over a network. | Improper authorization in Copilot Cowork allows an unauthorized attacker to elevate privileges over a network. |
| Title | Microsoft Power Apps Elevation of Privilege Vulnerability | Copilot Cowork Elevation of Privilege Vulnerability |
| First Time appeared |
Microsoft copilot Cowork
|
|
| CPEs | cpe:2.3:a:microsoft:copilot_cowork:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft copilot Cowork
|
Fri, 07 Aug 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 07 Aug 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper authorization in Microsoft Power Apps allows an unauthorized attacker to elevate privileges over a network. | |
| Title | Microsoft Power Apps Elevation of Privilege Vulnerability | |
| First Time appeared |
Microsoft
Microsoft power-apps |
|
| Weaknesses | CWE-285 | |
| CPEs | cpe:2.3:a:microsoft:power-apps:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft power-apps |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-08-14T18:09:52.897Z
Reserved: 2026-07-02T16:05:24.069Z
Link: CVE-2026-59118
Updated: 2026-08-07T00:56:37.925Z
Status : Modified
Published: 2026-08-07T00:16:33.923
Modified: 2026-08-11T18:17:39.147
Link: CVE-2026-59118
No data.
OpenCVE Enrichment
Updated: 2026-08-13T10:45:04Z