浏览 375+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-34257 | Open Redirect vulnerability in SAP NetWeaver Application Server ABAP | SAP_SE | SAP NetWeaver Application Server ABAP | Medium | 6.1 | 2026-04-14 00:08:40 | Deep Dive |
| CVE-2026-27674 | Code Injection vulnerability in SAP NetWeaver Application Server Java (Web Dynpro Java) | SAP_SE | SAP NetWeaver Application Server Java (Web Dynpro Java) | Medium | 6.1 | 2026-04-14 00:06:50 | Deep Dive |
| CVE-2026-27688 | Missing Authorization check in SAP NetWeaver Application Server for ABAP | SAP_SE | SAP NetWeaver Application Server for ABAP | Medium | 5.0 | 2026-03-10 00:18:56 | Deep Dive |
| CVE-2026-27685 | Insecure Deserialization in SAP NetWeaver Enterprise Portal Administration | SAP_SE | SAP NetWeaver Enterprise Portal Administration | Critical | 9.1 | 2026-03-10 00:18:22 | Deep Dive |
| CVE-2026-27684 | SQL Injection Vulnerability in SAP NetWeaver (Feedback Notification) | SAP_SE | SAP NetWeaver (Feedback Notification) | Medium | 6.4 | 2026-03-10 00:18:11 | Deep Dive |
| CVE-2026-24316 | Server-Side Request Forgery (SSRF) in SAP NetWeaver Application Server for ABAP | SAP_SE | SAP NetWeaver Application Server for ABAP | Medium | 6.4 | 2026-03-10 00:17:51 | Deep Dive |
| CVE-2026-24310 | Missing Authorization check in SAP NetWeaver Application Server for ABAP | SAP_SE | SAP NetWeaver Application Server for ABAP | Low | 3.5 | 2026-03-10 00:17:21 | Deep Dive |
| CVE-2026-24309 | Missing Authorization check in SAP NetWeaver Application Server for ABAP | SAP_SE | SAP NetWeaver Application Server for ABAP | Medium | 6.4 | 2026-03-10 00:17:13 | Deep Dive |
| CVE-2026-24320 | Memory Corruption vulnerability in SAP NetWeaver and ABAP Platform (Application Server ABAP) | SAP_SE | SAP NetWeaver and ABAP Platform (Application Server ABAP) | Low | 3.1 | 2026-02-10 03:03:43 | Deep Dive |
| CVE-2026-23687 | XML Signature Wrapping in SAP NetWeaver AS ABAP and ABAP Platform | SAP_SE | SAP NetWeaver AS ABAP and ABAP Platform | High | 8.8 | 2026-02-10 03:02:48 | Deep Dive |
| CVE-2026-23686 | CRLF Injection vulnerability in SAP NetWeaver Application Server Java | SAP_SE | SAP NetWeaver Application Server Java | Low | 3.4 | 2026-02-10 03:02:37 | Deep Dive |
| CVE-2026-23685 | Insecure Deserialization vulnerability in SAP NetWeaver (JMS service) | SAP_SE | SAP NetWeaver (JMS service) | Medium | 4.4 | 2026-02-10 03:02:27 | Deep Dive |
| CVE-2026-0509 | Missing Authorization check in SAP NetWeaver Application Server ABAP and ABAP Platform | SAP_SE | SAP NetWeaver Application Server ABAP and ABAP Platform | Critical | 9.6 | 2026-02-10 03:01:53 | Deep Dive |
| CVE-2026-0484 | Missing Authorization check in SAP NetWeaver Application Server ABAP and SAP S/4HANA | SAP_SE | SAP NetWeaver Application Server ABAP and SAP S/4HANA | Medium | 6.5 | 2026-02-10 03:00:41 | Deep Dive |
| CVE-2026-0507 | OS Command Injection vulnerability in SAP Application Server for ABAP and SAP NetWeaver RFCSDK | SAP_SE | SAP Application Server for ABAP and SAP NetWeaver RFCSDK | High | 8.4 | 2026-01-13 01:15:37 | Deep Dive |
| CVE-2026-0506 | Missing Authorization check in SAP NetWeaver Application Server ABAP and ABAP Platform | SAP_SE | SAP NetWeaver Application Server ABAP and ABAP Platform | High | 8.1 | 2026-01-13 01:14:34 | Deep Dive |
| CVE-2026-0499 | Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal | SAP_SE | SAP NetWeaver Enterprise Portal | Medium | 6.1 | 2026-01-13 01:13:47 | Deep Dive |
| CVE-2025-42875 | Missing Authentication check in SAP NetWeaver Internet Communication Framework | SAP_SE | SAP NetWeaver Internet Communication Framework | Medium | 6.6 | 2025-12-09 02:14:30 | Deep Dive |
| CVE-2025-42874 | Denial of service (DOS) in SAP NetWeaver (remote service for Xcelsius) | SAP_SE | SAP NetWeaver (remote service for Xcelsius) | High | 7.9 | 2025-12-09 02:14:20 | Deep Dive |
| CVE-2025-42872 | Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal | SAP_SE | SAP NetWeaver Enterprise Portal | Medium | 6.1 | 2025-12-09 02:13:56 | Deep Dive |