CVE-2026-44770: SAP SE SAP s/4 Hana Create Single Payment
Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.
SAP Create Single Payment does not perform necessary authorization checks for an authenticated user, a restricted user could access specific entity set keys resulting in disclosure of information. This has low impact on confidentiality, with no impact on integrity and availability of the application.
Affected products
- SAP SE SAP s/4 Hana Create Single Payment: version S4CORE 102 only; version 103 only; version 104 only; version 105 only; version 106 only; version 107 only; …
Published 2026-07-14. Last modified 2026-07-14.