AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2026-0493

MEDIUM · CVSS 4.3 EPSS 0.11%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-01-13 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.3. Exploitation may require the attacker to be authenticated.

CVE
CVE-2026-0493
Severity
MEDIUM
CVSS
4.3
EPSS
0.11%

Original NVD Description

Due to a Cross-Site Request Forgery (CSRF) vulnerability in SAP Fiori App Intercompany Balance Reconciliation an attacker could execute state?changing actions using an inappropriate request type, this deviation from expected request semantics may allow an attacker to trigger unintended actions on behalf of an authenticated user causing low impact on integrity of the system. This has no impact on confidentiality and availability.