VORANT. Threat Intelligence Sign in Get the full feed

Microsoft Dynamics 365 Patches Two Vulnerabilities

routine vulnerability technology

NCSC-NL advisory reports two Microsoft Dynamics vulnerabilities allowing arbitrary code execution and privilege escalation; patches available.

NCSC-NL published a security advisory covering two vulnerabilities patched by Microsoft in Dynamics 365 (both online and on-premise) and Power Automate. The first, CVE-2026-65772, is a deserialization of untrusted data or path traversal issue in Dynamics 365 with a CVSS score of 8.80, allowing an attacker to execute arbitrary code. The second, CVE-2026-77897, affects Power Automate with a CVSS score of 7.00, enabling an attacker to obtain elevated privileges. Combined, exploitation of these flaws could allow an attacker to escalate privileges, execute arbitrary code, and access sensitive data.

No evidence of active exploitation in the wild is mentioned in the advisory. Microsoft has released updates addressing both vulnerabilities. NCSC-NL recommends organizations running Microsoft Dynamics 365 or Power Automate apply the available patches promptly and consult Microsoft's Security Response Center portal for further guidance, installation instructions, and any applicable workarounds.

Mentioned in this report

Vulnerabilities CVE-2026-65772CVE-2026-77897

Source reporting: https://advisories.ncsc.nl/2026/ncsc-2026-0348.html

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free