Sap Approuter vulnerabilities
14 known vulnerabilities affecting sap/approuter.
Total CVEs
14
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH3MEDIUM8LOW2
Vulnerabilities
Page 1 of 1
CVE-2026-27690P2CRITICALCVSS 9.1fixed in 20.10.02026-07-14
CVE-2026-27690 [CRITICAL] CWE-444 CVE-2026-27690: Due to an HTTP Request Smuggling vulnerability in SAP Approuter, an unauthenticated attacker could s
Due to an HTTP Request Smuggling vulnerability in SAP Approuter, an unauthenticated attacker could send a specially crafted HTTP request that leads to request-response desynchronization. This could result in the exposure of user responses and cause the system to become unavailable. This leads to a high impact on confidentiality and availability.
ghsanvd
CVE-2026-44745P3HIGHCVSS 8.1fixed in 21.2.02026-07-14
CVE-2026-44745 [HIGH] CWE-601 CVE-2026-44745: SAP Approuter does not properly validate incoming request headers during the OAuth2 login flow under
SAP Approuter does not properly validate incoming request headers during the OAuth2 login flow under certain configurations. This allows an unauthenticated remote attacker to craft a malicious link which, when clicked by a victim, could lead to unauthorized access. Successful exploitation results in a high impact to the confidentiality and integrity w
ghsanvd
CVE-2025-24876P3HIGH≥ 2.6.1, < 16.7.22025-02-11
CVE-2025-24876 [HIGH] CWE-601 Authentication bypass in @sap/approuter
Authentication bypass in @sap/approuter
The SAP Approuter Node.js package version v16.7.1 and before is vulnerable to Authentication bypass. When trading an authorization code, an attacker can steal the session of the victim by injecting malicious payload, causing High impact on confidentiality and integrity of the application.
ghsaosv
CVE-2026-58230P3HIGHCVSS 7.0fixed in 23.0.02026-08-11
CVE-2026-58230 [HIGH] CWE-601 CVE-2026-58230: SAP Approuter does not sufficiently validate certain token content under specific configurations. An
SAP Approuter does not sufficiently validate certain token content under specific configurations. An unauthenticated attacker could send a specially crafted token to cause sensitive credential material to be sent to an attacker-controlled destination. The attack complexity is high due to non-default preconditions required in the target environment. Th
ghsanvd
CVE-2026-66760P3MEDIUMCVSS 6.4fixed in 23.0.02026-08-11
CVE-2026-66760 [MEDIUM] CWE-295 CVE-2026-66760: SAP Approuter does not correctly validate client certificates in certain callback flows. An attacker
SAP Approuter does not correctly validate client certificates in certain callback flows. An attacker with low privileges, holding a certificate from the same trusted authority with matching subject values, could bypass the identity check. This complexity makes the attack difficult to execute. Successful exploitation could allow impersonation of a tr
nvd
CVE-2026-66777P3MEDIUMCVSS 5.9fixed in 23.0.02026-08-11
CVE-2026-66777 [MEDIUM] CWE-22 CVE-2026-66777: SAP Approuter does not sufficiently validate certain incoming requests before forwarding them to bac
SAP Approuter does not sufficiently validate certain incoming requests before forwarding them to backend destinations. Due to the complexity of the required conditions, an attacker with low privileges could send specially crafted requests to bypass authorization checks and reach protected resources beyond their assigned scope. Successful exploitation
nvd
CVE-2026-66776P3MEDIUMCVSS 5.9fixed in 23.0.02026-08-11
CVE-2026-66776 [MEDIUM] CWE-347 CVE-2026-66776: SAP Approuter does not consistently enforce integrity verification on certain session-related reques
SAP Approuter does not consistently enforce integrity verification on certain session-related request headers under specific conditions. An attacker with low privileges could send a specially crafted request that bypasses the integrity check and loads another user's session context. Successful exploitation requires the attacker to have previously ob
nvd
CVE-2026-58237P3MEDIUMCVSS 5.9fixed in 23.0.02026-08-11
CVE-2026-58237 [MEDIUM] CWE-862 CVE-2026-58237: WebSocket of SAP Approuter does not perform sufficient authorization checks in certain functionality
WebSocket of SAP Approuter does not perform sufficient authorization checks in certain functionality. An attacker with low privileges could exploit this to access restricted functionality. Successful exploitation could allow the attacker to read sensitive information and perform limited modifications, resulting in a high impact on confidentiality an
nvd
CVE-2026-58238P4MEDIUMCVSS 5.9fixed in 23.0.02026-08-11
CVE-2026-58238 [MEDIUM] CWE-770 CVE-2026-58238: SAP Approuter does not sufficiently handle certain requests under specific conditions. An unauthenti
SAP Approuter does not sufficiently handle certain requests under specific conditions. An unauthenticated attacker could send specially crafted input that causes the component to crash and restart. Successful exploitation requires specific runtime conditions to be met, making the attack complex to execute. This results in a high impact on availabili
nvd
CVE-2026-66778P4MEDIUMCVSS 5.3fixed in 23.0.02026-08-11
CVE-2026-66778 [MEDIUM] CWE-644 CVE-2026-66778: SAP Approuter does not sufficiently sanitize certain request headers before forwarding traffic to in
SAP Approuter does not sufficiently sanitize certain request headers before forwarding traffic to internal components. An unauthenticated attacker could send a specially crafted request to obtain limited unauthorized access to information. This results in a low impact on confidentiality. There is no impact on integrity and availability.
nvd
CVE-2026-66761P4MEDIUMCVSS 4.3fixed in 23.0.02026-08-11
CVE-2026-66761 [MEDIUM] CWE-770 CVE-2026-66761: SAP Approuter does not enforce sufficient flow control in certain functionality. An attacker with lo
SAP Approuter does not enforce sufficient flow control in certain functionality. An attacker with low privileges could send high volumes of data without consuming responses, causing unbounded memory growth. This results in a low impact on availability. There is no impact on confidentiality and integrity.
nvd
CVE-2026-66775P4MEDIUMCVSS 4.3fixed in 23.0.02026-08-11
CVE-2026-66775 [MEDIUM] CWE-352 CVE-2026-66775: SAP Approuter does not enforce cross-site request forgery protection on the authentication flow by d
SAP Approuter does not enforce cross-site request forgery protection on the authentication flow by default. An unauthenticated attacker could craft a malicious link and trick a victim into following it. Successful exploitation could allow the attacker to bind the victim's session to an attacker-controlled identity, resulting in a low impact on integ
nvd
CVE-2026-58239P4LOWCVSS 3.7fixed in 23.0.02026-08-11
CVE-2026-58239 [LOW] CWE-807 CVE-2026-58239: SAP Approuter does not sufficiently validate tenant context in inbound requests. An unauthenticated
SAP Approuter does not sufficiently validate tenant context in inbound requests. An unauthenticated attacker could send specially crafted requests to spoof the tenant context under conditions not fully within their control. Successful exploitation could allow limited access to another tenant's information, resulting in a low impact on confidentiality. T
nvd
CVE-2026-66774P4LOWCVSS 3.7fixed in 23.0.02026-08-11
CVE-2026-66774 [LOW] CWE-754 CVE-2026-66774: SAP Approuter does not consistently handle certain error conditions. An attacker with low privileges
SAP Approuter does not consistently handle certain error conditions. An attacker with low privileges could exploit this under a non-default configuration. Successful exploitation is highly complex, as it depends on conditions outside the attacker's control. This could result in a low impact on availability. There is no impact on confidentiality and int
nvd