VORANT. Threat Intelligence Sign in Get the full feed

CERT-FR Warns of Mass SAP Vulnerabilities

elevated vulnerability technologymanufacturingfinancial-services

CERT-FR issued an advisory covering dozens of SAP product vulnerabilities patched in the August 2026 SAP Security Patch Day, including RCE and privilege escalation flaws.

CERT-FR published an advisory summarizing a large batch of vulnerabilities affecting numerous SAP products, including ABAP Platform, NetWeaver, BusinessObjects Business Intelligence Platform, Commerce Cloud, S/4HANA, and SAPUI5, among others. The flaws span a wide range of impact types including remote code execution, privilege escalation, SQL injection, cross-site scripting, security policy bypass, and confidentiality breaches. No active exploitation is mentioned in the advisory; it functions as a routine notification tied to SAP's August 2026 Security Patch Day bulletin.

The advisory lists over 40 CVEs affecting a broad swath of SAP's product line, reflecting the scale of SAP's monthly patch cycle rather than a single coordinated campaign. Affected organizations running unpatched versions of the listed SAP components are advised to consult SAP's official security bulletin and apply the relevant patches. Given the breadth of products (ERP, business intelligence, commerce, manufacturing integration) impacted, organizations across many sectors relying on SAP infrastructure should prioritize patch management for these components.

Mentioned in this report

Vulnerabilities CVE-2025-42947CVE-2025-58057CVE-2026-33871CVE-2026-34265CVE-2026-34480CVE-2026-40130CVE-2026-42945CVE-2026-44758CVE-2026-44762CVE-2026-44763CVE-2026-44764CVE-2026-44765CVE-2026-44772CVE-2026-5598CVE-2026-58230CVE-2026-58231CVE-2026-58233CVE-2026-58235CVE-2026-58236CVE-2026-58237CVE-2026-58238CVE-2026-58239CVE-2026-58241CVE-2026-58243CVE-2026-58244CVE-2026-58245CVE-2026-58247CVE-2026-58248CVE-2026-66760CVE-2026-66761CVE-2026-66763CVE-2026-66764CVE-2026-66770CVE-2026-66771CVE-2026-66772CVE-2026-66773CVE-2026-66774CVE-2026-66775CVE-2026-66776CVE-2026-66777

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0998

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free