SAP Security Notes, August 2026
SAP Security Note 3714806 patches a critical memory corruption vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform, tracked as CVE-2026-34265 with a CVSS score of 9.8. An unauthenticated remote attacker can exploit improper boundary validation in DIAG protocol parsing to corrupt memory, potentially disclose sensitive information, affect system integrity, or cause system crashes.