← Back to search

CVE-2026-27690

9.1 CRITICAL

Description

Due to an HTTP Request Smuggling vulnerability in SAP Approuter, an unauthenticated attacker could send a specially crafted HTTP request that leads to request-response desynchronization. This could result in the exposure of user responses and cause the system to become unavailable. This leads to a high impact on confidentiality and availability.

Dates

Published: 2026-07-14 · Last Modified: 2026-07-14

Weaknesses

CWE-444