CVE-2019-0388: SAP UI

Medium severity, CVSS 5.3. EPSS: 0.7% chance of exploitation in the next 30 days.

SAP UI5 HTTP Handler (corrected in SAP_UI versions 7.5, 7.51, 7.52, 7.53, 7.54 and SAP UI_700 version 2.0) allows an attacker to manipulate content due to insufficient URL validation.

Affected products

  • SAP UI: version 2.0 only; version 7.5 only; version 7.51 only; version 7.52 only; version 7.53 only; version 7.54 only

Published 2019-11-13. Last modified 2026-06-17.