{"total":1,"items":[{"id":89,"title":"2026-011: Critical Vulnerabilities in SAP Kernel and NetWeaver Message Server","original_title":"2026-011: Critical Vulnerabilities in SAP Kernel and NetWeaver Message Server","source_rating":null,"summary":"On 8 September 2026, as part of its September Security Patch Day, SAP released Security Notes addressing two critical vulnerabilities affecting a broad range of SAP products[3]. The most severe, CVE-2026-44756 (CVSS 10.0), is a memory corruption vulnerability in SAP Extended Passport (EPP) processing, nicknamed \"OVERPA","ai":false,"actions":[],"url":"https://cert.europa.eu/publications/security-advisories/2026-011/","type":"advisory","language":"en","published_at":"2026-09-09T15:07:59+00:00","severity":"laag","priority":15,"vendors":["SAP"],"cves":[{"id":"CVE-2026-44756","cvss":10.0,"epss":0.00678,"epss_percentile":0.50645,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-58240","cvss":9.8,"epss":0.00528,"epss_percentile":0.42702,"in_kev":false,"kev_ransomware":false}],"cve_count":2,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":10.0,"epss_max":0.00678,"source_count":1,"ncsc":null,"source":{"slug":"cert-eu","name":"CERT-EU Security Advisories","category":"overheid","country":"EU","license":"CC BY 4.0, samengevat en vertaald door Seinwacht","reuse":"open"},"bundle":null}]}