SAP NetWeaver Application Server ABAP memory corruption memory corruption flaw (CVE-2026-44747)
Vulnerability
Summary
Hide ▲
Show ▼
SAP's July 2026 security patch day resolved CVE-2026-44747, a memory corruption bug in NetWeaver Application Server ABAP that could let attackers access and modify data and cause system unavailability.
Related Happenings
SAP NetWeaver Application Server ABAP SICF workaround for CVE-2026-44747
Advisory/Mitigation
H score40
First: 14.07.2026 21:17
Last: 14.07.2026 21:17
Sources 1
How related:
"As a temporary workaround the note proposes to disable all ICF nodes with a specific property in transaction SICF," SAP security firm Onapsis said. "Since the workaround will disable opening transactions in SAP GUI for HTML, it is not an option for all customers and it is strongly recommended to install the patching ABAP Kernel version."
About this happening:
SAP NetWeaver Application Server ABAP customers now have a temporary workaround for CVE-2026-44747 that can reduce exposure to memory corruption. The mitigation disabl...
SAP NetWeaver Application Server ABAP SICF workaround for CVE-2026-44747
Advisory/MitigationHow related: "As a temporary workaround the note proposes to disable all ICF nodes with a specific property in transaction SICF," SAP security firm Onapsis said. "Since the workaround will disable opening transactions in SAP GUI for HTML, it is not an option for all customers and it is strongly recommended to install the patching ABAP Kernel version."
About this happening: SAP NetWeaver Application Server ABAP customers now have a temporary workaround for CVE-2026-44747 that can reduce exposure to memory corruption. The mitigation disabl...
Cloud Software Group NetScaler urgent remediation advisory
Advisory/Mitigation
H score44
First: 25.03.2026 17:52
Last: 25.03.2026 17:52
Sources 1
About this happening:
Cloud Software Group issued urgent remediation guidance for NetScaler ADC and NetScaler Gateway, telling affected customers to install updated versions as soon as poss...
Cloud Software Group NetScaler urgent remediation advisory
Advisory/MitigationAbout this happening: Cloud Software Group issued urgent remediation guidance for NetScaler ADC and NetScaler Gateway, telling affected customers to install updated versions as soon as poss...
Timeline
-
14.07.2026 14:17 4 articles · 13d ago
SAP patches CVE-2026-44747 in NetWeaver Application Server ABAP
Mitigation Patch UpdateSAP released security notes for CVE-2026-44747, a memory corruption bug in NetWeaver Application Server ABAP rated CVSS 9.9. SAP said successful exploitation could let an attacker access and modify data and cause system unavailability, and customers were advised to apply the patches or temporarily disable all ICF nodes with a specific property in transaction SICF.
Show sources
- SAP Patches Critical Vulnerabilities in NetWeaver, Approuter, Commerce Cloud — www.securityweek.com — 14.07.2026 14:17
- SAP Patches Critical Vulnerabilities in NetWeaver, Approuter, Commerce Cloud — www.securityweek.com — 14.07.2026 14:17
- SAP warns of critical flaws in NetWeaver and Commerce Cloud — www.bleepingcomputer.com — 14.07.2026 14:42
- SAP Patches CVSS 9.9 NetWeaver ABAP Flaw That Could Expose or Modify Data — thehackernews.com — 14.07.2026 21:17