CVE-2026-27690
SAP_SE SAP Approuter
Due to an HTTP Request Smuggling vulnerability in SAP Approuter, an unauthenticated attacker could send a specially crafted HTTP request that leads to request-response desynchronization. This could result in the exposure of user responses and cause the system to become unavailable. This leads to a high impact on confidentiality and availability.
- CVSS
- 9.1
- EPSS
- 0.69% 49.1% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.14