Known vulnerabilities in Power Automate agent for virtual desktops

Vendor: Microsoft
Software CPE: cpe:2.3:a:microsoft:power_automate_agent_for_virtual_desktops:*:*:*:*:*:*:*:*
Total vulnerabilities: 1
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 7.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Power Automate agent for virtual desktops Power Automate agent for virtual desktops is affected by 1 known vulnerabilities: 1 low Critical High Medium Low

Vulnerabilities (1)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU147746 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-77897
CWE-22 Low
No
No
2.71.115.26224 08.09.2026 SB2026090869