CVE-2026-44749EPSS p23.0%
CVE-2026-44749CVE-2026-44749
Description
The SAP Gateway allows attackers to inject content into error messages, potentially leading to disclosure of request artefacts (e.g., regex patterns) and revealing underlying URI parsing logic. Leading to low impact on confidentiality. Integrity and availability are unaffected.
Scoring
| CVSS | 4.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
| EPSS | 0.32% probability of exploitation · percentile 23.0% · 2026-10-06T12:00:23Z |
| Last modified | 2026-07-24 |