CVE Tools

Sap Netweaver Application Server Abap and Abap Platform

13 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Sap Netweaver Application Server Abap and Abap Platform, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.

Sap Netweaver Application Server Abap and Abap Platform CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Sap Netweaver Application Server Abap and Abap Platform CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-051
2025-060
2025-071
2025-080
2025-090
2025-100
2025-110
2025-120
2026-011
2026-021
2026-030
2026-040
2026-050
2026-060
2026-070
2026-081
2026-090

Severity

How the 13 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical215%
  • High215%
  • Medium969%

Latest CVEs

The 13 most recently published vulnerabilities affecting Sap Netweaver Application Server Abap and Abap Platform.

  1. CVE-2026-58236OS Command Injection vulnerability in Application Server ABAP of SAP NetWeaver and ABAP Platform5.5
  2. CVE-2026-0509Missing Authorization check in SAP NetWeaver Application Server ABAP and ABAP Platform9.6
  3. CVE-2026-0506Missing Authorization check in SAP NetWeaver Application Server ABAP and ABAP Platform8.1
  4. CVE-2025-42969Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform6.1
  5. CVE-2025-31329Information Disclosure vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform6.2
  6. CVE-2024-41734Missing Authorization check in SAP NetWeaver Application Server ABAP and ABAP Platform4.3
  7. CVE-2024-33006File upload vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform9.6
  8. CVE-2024-32733Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform6.1
  9. CVE-2023-49581SQL Injection vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform4.1
  10. CVE-2023-41366Information Disclosure vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform5.3
  11. CVE-2022-41214Due to insufficient input validation, SAP NetWeaver Application Server ABAP and ABAP Platform allows an attacker with high level privileges to use a remote enabled function to delete a file which i...8.7
  12. CVE-2022-41212Due to insufficient input validation, SAP NetWeaver Application Server ABAP and ABAP Platform allows an attacker with high level privileges to use a remote enabled function to read a file which is ...4.9
  13. CVE-2022-22545A high privileged user who has access to transaction SM59 can read connection details stored with the destination for http calls in SAP NetWeaver Application Server ABAP and ABAP Platform - version...4.9

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store