CRITICALVulnerability
Verified
Global

NVD CRITICAL: CVE-2026-26149 — Improper neutralization of escape, meta, or control sequences in Microsoft Power...

·Source: NIST NVD

Updated:

Executive Summary

Improper neutralization of escape, meta, or control sequences in Microsoft Power Apps allows an authorized attacker to bypass a security feature over a network.

Analysis

Improper neutralization of escape, meta, or control sequences in Microsoft Power Apps allows an authorized attacker to bypass a security feature over a network. CVSS Score: 9. Published: 2026-04-14T18:16:45.790.

Indicators of Compromise (1)

CVE (1)
CVE-2026-26149
Source Attribution

Originally published by NIST NVD on Apr 14, 2026. Verified by: NIST.

Related Threats