VulnSea

SAP_SE has 18 CVEs on record. Disclosure cadence is accelerating: 18 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 18. The median CVSS is 6.5 (medium), with 4 rated critical. None have a confirmed exploitation report. The most common weakness class is CWE-352 (3). Most affected products: SAP S/4HANA (Finance for Advanced Payment Management) (3), SAP Cloud Application Programming Model (CAP) (1), SAP Extended Passport (EPP) Processing (1).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
6.5
Publish → KEV
Last 90 days
18 prev 0

Products

  • SAP S/4HANA (Finance for Advanced Payment Management) 3
  • SAP Cloud Application Programming Model (CAP) 1
  • SAP Extended Passport (EPP) Processing 1
  • SAP Fiori Launchpad 1
  • SAP Integration Suite 1
  • SAP Manufacturing Integration and Intelligence 1
18
Total CVEs
4
Critical
0
CISA KEV
0
Exploited

SAP_SE vulnerabilities

CVEs affecting SAP_SE, newest first. Open any entry for full detail, references, and exploit status.

18 CVEsRSS

CVE-2026-76974Medium· 5.3
today

SAP Fiori Launchpad does not sufficiently validate certain user-controlled input

SAP Fiori Launchpad does not sufficiently validate certain user-controlled input. An unauthenticated attacker could craft a malicious link that, when clicked by an authenticated user, causes the browser to load attacker-controlled conten…

SunlitSAP_SE · SAP Fiori Launchpadvia NVD
CVE-2026-76977Medium· 4.3
2w ago

SAP UI5 does not sufficiently validate the parent frame's origin against the configured allowlist

SAP UI5 does not sufficiently validate the parent frame's origin against the configured allowlist. An unauthenticated attacker could host a malicious page to bypass framing restrictions. If an authenticated victim visits the attacker's p…

SunlitSAP_SE · SAPUI5(Frame Options Allowlist)EPSS 0.22%via NVD
CVE-2026-76971Medium· 6.5
2w ago

Due to a Server-Side Request Forgery (SSRF) vulnerability in SAP Manufacturing Integration and Intelligence, an attacker could cause the server to initiate arbitrary outbound requests

Due to a Server-Side Request Forgery (SSRF) vulnerability in SAP Manufacturing Integration and Intelligence, an attacker could cause the server to initiate arbitrary outbound requests. If processed by the application, this behavior could…

SunlitSAP_SE · SAP Manufacturing Integration and IntelligenceEPSS 0.15%via NVD
CVE-2026-76969Critical· 9.4
2w ago

@sap/cds-mtxs NPM library does not perform sufficient checks on certain functionality used in multitenant CAP applications with extensibility enabled

@sap/cds-mtxs NPM library does not perform sufficient checks on certain functionality used in multitenant CAP applications with extensibility enabled. An unauthenticated attacker could send specially crafted requests to obtain sensitive …

MidnightSAP_SE · SAP Cloud Application Programming Model (CAP)EPSS 0.29%via NVD
CVE-2026-76968Medium· 6.5
2w ago

SAP Web Dispatcher, Internet Communication Manager and SAP Content Server allows an authenticated low-privileged attacker to access certain administrative functionality or interface and obtain sensitive information about the system state…

SAP Web Dispatcher, Internet Communication Manager and SAP Content Server allows an authenticated low-privileged attacker to access certain administrative functionality or interface and obtain sensitive information about the system state…

SunlitSAP_SE · SAP Web Dispatcher, Internet Communication Manager and SAP Content ServerEPSS 0.23%via NVD
CVE-2026-76967High· 7.8
2w ago

SAP NetWeaver Business Client does not perform sufficient validation when processing certain locally stored data during application startup

SAP NetWeaver Business Client does not perform sufficient validation when processing certain locally stored data during application startup. An attacker with low privileges on the local system could replace this data with specially craft…

TwilightSAP_SE · SAP NetWeaver Business ClientEPSS 0.22%via NVD
CVE-2026-76963Medium· 4.3
2w ago

Due to a missing authorization check in Application Server ABAP of SAP NetWeaver and ABAP Platform, an authenticated attacker could gain unauthorized access to sensitive system configuration information

Due to a missing authorization check in Application Server ABAP of SAP NetWeaver and ABAP Platform, an authenticated attacker could gain unauthorized access to sensitive system configuration information. Successful exploitation could res…

SunlitSAP_SE · SAP NetWeaver and ABAP PlatformEPSS 0.17%via NVD
CVE-2026-76962Medium· 4.3
2w ago

SAP S/4HANA (Manage Bank Chains app) does not perform sufficient authorization checks within certain affected functionality

SAP S/4HANA (Manage Bank Chains app) does not perform sufficient authorization checks within certain affected functionality. An attacker with low privileges could send specially crafted requests to delete specific entries that should not…

SunlitSAP_SE · SAP S/4HANA (Manage Bank Chains app)EPSS 0.20%via NVD
CVE-2026-76961Low· 3.5
2w ago

SAP S/4HANA Finance (Advanced Payment Management) does not perform sufficient Cross-Site Request Forgery protection on certain requests, due to this an attacker with low privileges could craft a malicious link or page

SAP S/4HANA Finance (Advanced Payment Management) does not perform sufficient Cross-Site Request Forgery protection on certain requests, due to this an attacker with low privileges could craft a malicious link or page. If an authenticate…

SunlitSAP_SE · SAP S/4HANA (Finance for Advanced Payment Management)EPSS 0.09%via NVD
CVE-2026-76960Low· 3.5
2w ago

SAP S/4HANA Finance (Advanced Payment Management) does not perform sufficient Cross-Site Request Forgery protection on certain requests, due to this an attacker with low privileges could craft a malicious link or page

SAP S/4HANA Finance (Advanced Payment Management) does not perform sufficient Cross-Site Request Forgery protection on certain requests, due to this an attacker with low privileges could craft a malicious link or page. If an authenticate…

SunlitSAP_SE · SAP S/4HANA (Finance for Advanced Payment Management)EPSS 0.09%via NVD
CVE-2026-76959Medium· 4.6
2w ago

SAP S/4HANA Finance (Advanced Payment Management) does not perform sufficient Cross-Site Request Forgery protection on certain requests due to this an attacker with low privileges could craft a malicious link or page

SAP S/4HANA Finance (Advanced Payment Management) does not perform sufficient Cross-Site Request Forgery protection on certain requests due to this an attacker with low privileges could craft a malicious link or page. If an authenticated…

SunlitSAP_SE · SAP S/4HANA (Finance for Advanced Payment Management)EPSS 0.09%via NVD
CVE-2026-76958High· 8.5
2w ago

SAP Integration Suite does not sufficiently validate XML documents accepted from untrusted sources in certain internal components

SAP Integration Suite does not sufficiently validate XML documents accepted from untrusted sources in certain internal components. An attacker with low privileges could submit specially crafted XML payloads containing malicious external …

TwilightSAP_SE · SAP Integration SuiteEPSS 0.22%via NVD
CVE-2026-66768Critical· 9.0
2w ago

SAP GUI for Java does not correctly enforce the trust level policy for certain functions invoked from a connected backend system

SAP GUI for Java does not correctly enforce the trust level policy for certain functions invoked from a connected backend system. A low-privileged attacker could exploit this weakness by manipulating a connected backend system to trigger…

MidnightSAP_SE · SAP NetWeaver (SAP GUI for Java)EPSS 0.32%via NVD
CVE-2026-66767High· 7.7
2w ago

SAP NetWeaver Application Server for ABAP and ABAP Platform allows an unauthenticated user to send a specially crafted packet that triggers reprocessing of a previously buffered user request, potentially hijacking another user's session …

SAP NetWeaver Application Server for ABAP and ABAP Platform allows an unauthenticated user to send a specially crafted packet that triggers reprocessing of a previously buffered user request, potentially hijacking another user's session …

TwilightSAP_SE · SAP NetWeaver Application Server for ABAP and ABAP PlatformEPSS 0.26%via NVD
CVE-2026-58240Critical· 9.8
2w ago

SAP NetWeaver Message Server does not sufficiently validate the authenticity of internal application server components during registration

SAP NetWeaver Message Server does not sufficiently validate the authenticity of internal application server components during registration. An unauthenticated attacker with network access to the affected service could exploit this weakne…

MidnightSAP_SE · SAP NetWeaver (Message Server)EPSS 0.34%via NVD
CVE-2026-58234Low· 2.2
2w ago

SAP Process Integration (SOAP Adapter) allows a privileged user to send specially crafted requests containing deeply nested entity definitions, which under certain conditions could temporarily increase processor load and degrade system r…

SAP Process Integration (SOAP Adapter) allows a privileged user to send specially crafted requests containing deeply nested entity definitions, which under certain conditions could temporarily increase processor load and degrade system r…

SunlitSAP_SE · SAP Process Integration (SOAP Adapter)EPSS 0.21%via NVD
CVE-2026-44766Medium· 6.5
2w ago

SAP S/4HANA (Intercompany Matching and Reconciliation) allows a low-privileged authenticated user to inject malicious input into certain functions, which may be processed by the database without proper validation

SAP S/4HANA (Intercompany Matching and Reconciliation) allows a low-privileged authenticated user to inject malicious input into certain functions, which may be processed by the database without proper validation. This could allow the us…

SunlitSAP_SE · SAP S/4HANA (Intercompany Matching and Reconciliation)EPSS 0.23%via NVD
CVE-2026-44756Critical· 10.0
2w ago

A memory safety vulnerability exists in the Extended Passport Protocol (EPP) processing library

A memory safety vulnerability exists in the Extended Passport Protocol (EPP) processing library. Under specific conditions, an unauthenticated attacker could exploit a crafted network request containing a malformed EPP header, potentiall…

MidnightSAP_SE · SAP Extended Passport (EPP) ProcessingEPSS 0.32%via NVD
SAP_SE vulnerabilities (CVEs) · VulnSea