-Infinity
0

Vendor Risk Score

See how sap compares to other vendors in security performance

View Risk Score →

Software

BleepingComputerSAP fixes critical flaws in NetWeaver and Commerce Cloud

First published (updated )

SAP Wily Introscope Enterprise ManagerCross-Site Scripting (XSS) vulnerability in SAP Wily Introscope Enterprise Manager

Risk 31
Severity
4.7
First published (updated )

SAP BusinessObjects Business Intelligence platformEmail Spoofing vulnerability in SAP Business Objects Business Intelligence Platform

Risk 22
Severity
4.3
First published (updated )

SAP Operational Data Provisioning Data Replication API (ODP-RFC)Missing caller identification check-in for ODP Data Replication APIs

Risk 42
Severity
6.6
First published (updated )

SAP SAP NetWeaver Application Server ABAPMissing Authorization check in Application Server ABAP of SAP NetWeaver and ABAP Platform

Risk 50
Severity
7.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

SAP SAP MDG (Review Match Groups Application)Missing Authorization check in SAP MDG (Review Match Groups Application)

Risk 22
Severity
4.3
First published (updated )

SAP NetWeaver Application Server ABAPXML Signature Wrapping in SAML Authentication in SAP NetWeaver AS ABAP and ABAP Platform

Risk 86
Severity
9.9
First published (updated )

SAP NetWeaver AS Java (JDBC Test Servlet)Reflected Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver AS Java (JDBC Test Servlet)

Risk 38
Severity
6.1
First published (updated )

SAP SAP S/4HANA (On-Premise)SQL Injection vulnerability in SAP S/4HANA

Risk 38
Severity
6.5
First published (updated )

SAP BusinessObjectsSecurity Misconfiguration vulnerability in SAP Business Objects

Risk 20
Severity
3.7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

SAP SAP NetWeaver Application Server Java (Web Container)Directory Traversal vulnerability in SAP NetWeaver Application Server Java (Web Container)

Risk 78
Severity
9
First published (updated )

SAP SAP NetWeaver Application Server ABAPMemory Corruption vulnerability in Application Server ABAP of SAP NetWeaver and ABAP Platform

Risk 89
Severity
9.8
First published (updated )

SAP SAP Fiori LaunchpadPath Traversal Vulnerability in SAP Fiori (launchpad)

Risk 28
Severity
4.2
First published (updated )

SAP SAP GatewayInformation Disclosure vulnerability in SAP Gateway

Risk 22
Severity
4.3
First published (updated )

SAP NetWeaver Application Server ABAPCSS Injection vulnerability in SAP NetWeaver Application Server ABAP

Risk 22
Severity
4.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

BleepingComputerSAP fixes critical vulnerabilities in Commerce Cloud and S/4HANA

First published (updated )

SAP Business Server Pages Application (TAF_APPLAUNCHER)Cross-Site Scripting (XSS) vulnerability in Business Server Pages Application (TAF_APPLAUNCHER)

Risk 38
Severity
6.1
First published (updated )

SAP SAP Financial ConsolidationDenial of service (DoS) in SAP Financial Consolidation

Risk 22
Severity
4.3
First published (updated )

SAP NetWeaver Application Server ABAPOS Command Injection vulnerability in SAP NetWeaver Application Server for ABAP and ABAP Platform

Risk 49
Severity
6.5
First published (updated )

SAP SAP Incentive and Commission ManagementMissing Authorization Check in SAP Incentive and Commission Management

Risk 22
Severity
4.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

SAP SAP S/4HANA Condition MaintenanceMissing Authorization check in SAP S/4HANA Condition Maintenance

Risk 46
Severity
6.3
First published (updated )

SAP SAP Strategic Enterprise Management (Balanced Scorecard Wizard - BSP application)Missing Authorization Check in SAP Strategic Enterprise Management (BSP application Balanced Scorecard Wizard)

Risk 34
Severity
5.4
First published (updated )

SAP SAP Application Server ABAPCode Injection vulnerability in SAP Application Server ABAP for SAP NetWeaver and ABAP Platform

Risk 22
Severity
4.3
First published (updated )

SAP SAP Commerce CloudMissing authentication check in SAP Commerce cloud configuration

Risk 83
Severity
9.6
First published (updated )

SAP SAP S/4HANA (SAP Enterprise Search for ABAP)SQL injection vulnerability in SAP S/4HANA (SAP Enterprise Search for ABAP)

Risk 71
Severity
9.6
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

SAP SAP Forecasting & ReplenishmentOS Command Injection Vulnerability in SAP Forecasting & Replenishment

Risk 64
Severity
8.2
First published (updated )

SAP SAPUI5 Search UIContent Spoofing vulnerability in SAPUI5 (Search UI)

Risk 24
Severity
4.7
First published (updated )

SAP NetWeaver Application Server ABAPReflected Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server ABAP (Applications based on Business Server Pages)

Risk 38
Severity
6.1
First published (updated )

SAP BusinessObjects Business Intelligence platformCross Site Request Forgery (CSRF) in SAP BusinessObjects Business Intelligence Platform

Risk 34
Severity
5.4
First published (updated )

SAP Human Capital ManagementInformation Disclosure vulnerability in SAP Human Capital Management for SAP S/4HANA

Risk 38
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203