CVE-2026-27679
Published Apr 14, 2026Due to missing authorization checks in the SAP S/4HANA frontend OData Service (Manage Reference Structures), an attacker could update and delete child entities via exposed OData s…
- evidence mentions
- 2
- Buzz score
- 21.0