// Alert

Microsoft Azure threat report

CVE-2026-65818, a server-side request forgery (SSRF) vulnerability in Microsoft Power Automate (CVSS 8.5), was published on September 3, 2026. The flaw allows an authorized attacker with low privileges to elevate privileges over a network through SSRF exploitation. Microsoft has released an official fix; organizations should apply the remediation immediately.

// Get alerts for Microsoft Azure