GHSA-h7cr-m88c-98m3MediumCVSS 5.3

SAP Approuter does not sufficiently sanitize certain request headers before forwarding traffic to...

Published
August 11, 2026
Last Modified
August 11, 2026

🔗 CVE IDs covered (1)

📋 Description

SAP Approuter does not sufficiently sanitize certain request headers before forwarding traffic to internal components. An unauthenticated attacker could send a specially crafted request to obtain limited unauthorized access to information. This results in a low impact on confidentiality. There is no impact on integrity and availability.

🔗 References (4)