Known Vulnerabilities for Application Server Java by Sap
Listed below are 1 of the newest known vulnerabilities associated with "Application Server Java" by "Sap".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-40478 json | Thymeleaf is a server-side Java template engine for web and standalone environments. Versions 3.1.3.RELEASE and prior contain... | Not Provided | 2026-04-17 | 2026-04-20 |
| CVE-2026-40477 json | Thymeleaf is a server-side Java template engine for web and standalone environments. Versions 3.1.3.RELEASE and prior contain... | Not Provided | 2026-04-17 | 2026-04-20 |
| CVE-2026-27674 json | Due to a Code Injection vulnerability in SAP NetWeaver Application Server Java (Web Dynpro Java), an unauthenticated attacker... | Not Provided | 2026-04-14 | 2026-04-15 |
| CVE-2016-3980 json | The Java Startup Framework (aka jstart) in SAP JAVA AS 7.2 through 7.4 allows remote attackers to cause a denial of service (... | 7.5 - HIGH | 2016-04-08 | 2018-12-10 |