Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 14 May 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 14 May 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Due to improper input handling under certain conditions, SAP NetWeaver Application Server ABAP allows an attacker to inject custom Cascading Style Sheets (CSS) data into a web page served by the application. When a user accesses or clicks the affected page, the injected CSS is executed. As a result, the issue has a low impact on confidentiality, while integrity and availability are not impacted. | |
| Title | CSS Injection vulnerability in SAP NetWeaver Application Server ABAP | |
| Weaknesses | CWE-276 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2026-05-14T19:17:51.192Z
Reserved: 2026-02-23T17:50:10.513Z
Link: CVE-2026-27680
Updated: 2026-05-14T19:17:47.992Z
Status : Received
Published: 2026-05-14T19:16:31.450
Modified: 2026-05-14T19:16:31.450
Link: CVE-2026-27680
No data.
OpenCVE Enrichment
Updated: 2026-05-14T20:30:04Z