Memory Management Flaw in SAP NetWeaver and ABAP Platform
CVE-2026-24320
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 10 February 2026
What is CVE-2026-24320?
A memory management vulnerability exists in SAP NetWeaver and ABAP Platform due to improper handling of specially crafted input. An authenticated attacker could exploit this flaw by supplying unique characters that lead to logical errors in memory management. This exploitation may result in memory corruption and allow the attacker to leak sensitive information. While this vulnerability does not impact the integrity or availability of the application, it poses a risk to the confidentiality of the data processed by the affected systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SAP NetWeaver and ABAP Platform (Application Server ABAP) KRNL64NUC 7.22
SAP NetWeaver and ABAP Platform (Application Server ABAP) 7.22EXT
SAP NetWeaver and ABAP Platform (Application Server ABAP) KRNL64UC 7.22
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved