CVE-2026-24322: SAP Solution Tools Plug-In
High severity, CVSS 7.7. EPSS: 0.2% chance of exploitation in the next 30 days.
SAP Solution Tools Plug-In (ST-PI) contains a function module that does not perform the necessary authorization checks for authenticated users, allowing sensitive information to be disclosed. This vulnerability has a high impact on confidentiality and does not affect integrity or availability.
Affected products
- SAP Solution Tools Plug-In: version 740 only; version 758 only; version 2008_1_700 only; version 2008_1_710 only
Published 2026-02-10. Last modified 2026-06-17.