Логотип exploitDog
bind:CVE-2026-24321
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-24321

Количество 2

Количество 2

nvd логотип

CVE-2026-24321

около 2 месяцев назад

SAP Commerce Cloud exposes multiple API endpoints to unauthenticated users, allowing them to submit requests to these open endpoints to retrieve sensitive information that is not intended to be publicly accessible via the front-end. This vulnerability has a low impact on confidentiality and does not affect integrity and availability.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xpv9-9vrq-v7c4

около 2 месяцев назад

SAP Commerce Cloud exposes multiple API endpoints to unauthenticated users, allowing them to submit requests to these open endpoints to retrieve sensitive information that is not intended to be publicly accessible via the front-end. This vulnerability has a low impact on confidentiality and does not affect integrity and availability.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-24321

SAP Commerce Cloud exposes multiple API endpoints to unauthenticated users, allowing them to submit requests to these open endpoints to retrieve sensitive information that is not intended to be publicly accessible via the front-end. This vulnerability has a low impact on confidentiality and does not affect integrity and availability.

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-xpv9-9vrq-v7c4

SAP Commerce Cloud exposes multiple API endpoints to unauthenticated users, allowing them to submit requests to these open endpoints to retrieve sensitive information that is not intended to be publicly accessible via the front-end. This vulnerability has a low impact on confidentiality and does not affect integrity and availability.

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу