
SAP Note 3759472: SAP Message Server Authentication Gap (CVE-2026-58240)
SAP Note 3759472 CVE-2026-58240 SAP Message Server Patch Day September 2026 SAP Security Note 3759472 | CVSS 3.0 base score 9.8 (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Co-founder and CTO of RedRays

SAP Note 3759472 CVE-2026-58240 SAP Message Server Patch Day September 2026 SAP Security Note 3759472 | CVSS 3.0 base score 9.8 (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)

SAP Note 3747649 CVE-2026-44756 SAP NetWeaver Kernel Patch Day September 2026 SAP Security Note 3747649 | CVSS 3.0 base score 10.0 (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)

SAP Security Patch Day September 2026 brings 20 security notes, four of them HotNews rated up to CVSS 10.0, alongside five High

CVE-2026-44772, CVSS 9.9: XSL transform parameters let an authenticated user make SAP MII fetch and execute a remote stylesheet. The gate ships disabled.
Adding {{itemName}} to cart
Added {{itemName}} to cart