Known Vulnerabilities for 365 Apps by Microsoft
Listed below are 10 of the newest known vulnerabilities associated with "365 Apps" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-42823 json | Improper access control in Azure Logic Apps allows an authorized attacker to elevate privileges over a network. | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-42603 json | OWASP BLT is a QA testing and vulnerability disclosure platform that encompasses websites, apps, git repositories, and more. ... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-42261 json | PromptHub is an all-in-one AI toolbox for prompt, skill, and agent management. From version 0.4.9 to before version 0.5.4, ap... | Not Provided | 2026-05-08 | 2026-05-11 |
| CVE-2026-42205 json | Avo is a framework to create admin panels for Ruby on Rails apps. Prior to version 3.31.2, a broken access control vulnerabil... | Not Provided | 2026-05-08 | 2026-05-12 |
| CVE-2026-41591 json | Marko is a declarative, HTML-based language for building web apps. Prior to marko version 5.38.36 and prior to @marko/runtime... | Not Provided | 2026-05-08 | 2026-05-08 |
| CVE-2026-40316 json | OWASP BLT is a QA testing and vulnerability disclosure platform that encompasses websites, apps, git repositories, and more. ... | Not Provided | 2026-04-15 | 2026-04-16 |
| CVE-2026-40089 json | Sonicverse is a Self-hosted Docker Compose stack for live radio streaming. The Sonicverse Radio Audio Streaming Stack dashboa... | Not Provided | 2026-04-09 | 2026-04-09 |
| CVE-2026-39848 json | Dockyard is a Docker container management app. Prior to 1.1.0, Docker container start and stop operations are performed throu... | Not Provided | 2026-04-09 | 2026-04-10 |
| CVE-2026-39424 json | MaxKB is an open-source AI assistant for enterprise. In versions 2.7.1 and below, the chat export feature is vulnerable to Im... | Not Provided | 2026-04-14 | 2026-04-16 |
| CVE-2026-35044 json | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to 1.4.38, t... | Not Provided | 2026-04-06 | 2026-04-06 |