SAP has released 17 security notes addressing various vulnerabilities, including four critical-severity flaws that could lead to system compromise. Organizations using SAP software should promptly apply these patches to mitigate potential exploitation risks. #CVE-2026-0501 #SQLInjection #CriticalVulnerabilities
Keypoints
- SAP published 17 security notes, four of which are critical vulnerabilities.
- The most severe flaw, CVE-2026-0501, involves a critical SQL injection in S/4HANA.
- Other critical issues include remote code execution and full system compromise vulnerabilities.
- Successful exploitation could allow attackers to escalate privileges and execute arbitrary commands.
- Organizations are encouraged to review and promptly patch affected SAP systems to prevent attacks.
Read More: https://www.securityweek.com/saps-january-2026-security-updates-patch-critical-vulnerabilities/