Known vulnerabilities in SAP SAP S/4HANA

Vendor: SAP
Website: https://www.sap.com/
Total Security Bulletins: 21

Security bulletins (21)

Secuity bulletin Severity Status Published
SB2026021027: Authenticated code injection in SAP CRM and SAP S/4HANA Medium
Patched
10.02.2026
SB2026011336: Multiple vulnerabilities in SAP S/4HANA Medium
Patched
13.01.2026
SB2025120915: Missing authorization in SAP S/4HANA Medium
Patched
09.12.2025
SB2025101739: Missing authorization in SAP S/4HANA Low
Patched
17.10.2025
SB2025090603: Multiple vulnerabilities in SAP S/4HANA High
Patched Exploited
06.09.2025
SB2025081231: Code Injection in SAP S/4HANA Low
Patched
12.08.2025
SB2025081230: Missing authorization in SAP S/4HANA Low
Patched
12.08.2025
SB2025051330: Multiple vulnerabilities in SAP S/4HANA Medium
Patched
13.05.2025
SB2025040827: Server-Side Request Forgery in SAP S/4HANA and SAP CRM Medium
Patched
08.04.2025
SB2025040826: Code Injection in SAP S/4HANA Medium
Patched
08.04.2025
SB2025031136: Multiple vulnerabilities in SAP S/4HANA Low
Patched
11.03.2025
SB2024100837: Input validation error in SAP S/4HANA Manage Bank Statements Low
Patched
08.10.2024
SB2024091017: Information disclosure in SAP S/4HANA Low
Patched
10.09.2024
SB2024091011: Cross-site scripting in SAP S/4HANA Low
Patched
10.09.2024
SB2023101767: Information disclosure in SAP S/4HANA Low
Patched
17.10.2023
SB2023101626: Missing authorization in SAP S/4HANA Medium
Patched
16.10.2023
SB2023092229: Multiple vulnerabilities in SAP S/4HANA Low
Patched
22.09.2023
SB2023072758: Improper access control in SAP S/4HANA Low
Patched
27.07.2023
SB2023072754: OS Command Injection in SAP S/4HANA Medium
Patched
27.07.2023
SB2023072750: Information disclosure in SAP S/4HANA Low
Patched
27.07.2023


Showing elements 1 - 20 out of 21