CVE-2026-40130: SAP SE Sapsprint Service
Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.
SAP SAPSPrint Service has memory corruption vulnerabilities in the handling of certain commands. An unauthenticated attacker could send specially crafted requests that trigger a buffer overflow in the affected component. This causes a temporary service interruption and automatic restart, resulting in low impact on availability but no impact on confidentiality and integrity.
Affected products
- SAP SE Sapsprint Service: version 8.10 only
Published 2026-08-11. Last modified 2026-08-26.