sap / approuter
13 known vulnerabilities in sap approuter.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-27690 | Medium | 0.7% | 9.1 | Due to an HTTP Request Smuggling vulnerability in SAP Approuter, an unauthentica… | |
| CVE-2026-44745 | Medium | 0.5% | 8.1 | SAP Approuter does not properly validate incoming request headers during the OAu… | |
| CVE-2026-58230 | Medium | 0.2% | 7.0 | SAP Approuter does not sufficiently validate certain token content under specifi… | |
| CVE-2026-66777 | Low | 0.3% | 5.9 | SAP Approuter does not sufficiently validate certain incoming requests before fo… | |
| CVE-2026-58238 | Low | 0.3% | 5.9 | SAP Approuter does not sufficiently handle certain requests under specific condi… | |
| CVE-2026-66778 | Low | 0.2% | 5.3 | SAP Approuter does not sufficiently sanitize certain request headers before forw… | |
| CVE-2026-66761 | Low | 0.2% | 4.3 | SAP Approuter does not enforce sufficient flow control in certain functionality.… | |
| CVE-2026-66774 | Low | 0.2% | 3.7 | SAP Approuter does not consistently handle certain error conditions. An attacker… | |
| CVE-2026-58239 | Low | 0.2% | 3.7 | SAP Approuter does not sufficiently validate tenant context in inbound requests.… | |
| CVE-2026-58237 | Low | 0.2% | 5.9 | WebSocket of SAP Approuter does not perform sufficient authorization checks in c… | |
| CVE-2026-66776 | Low | 0.1% | 5.9 | SAP Approuter does not consistently enforce integrity verification on certain se… | |
| CVE-2026-66775 | Low | 0.1% | 4.3 | SAP Approuter does not enforce cross-site request forgery protection on the auth… | |
| CVE-2026-66760 | Low | 0.1% | 6.4 | SAP Approuter does not correctly validate client certificates in certain callbac… |