{"id":14476,"date":"2026-05-26T09:47:06","date_gmt":"2026-05-26T07:47:06","guid":{"rendered":"https:\/\/www.inprosec.com\/?p=14476"},"modified":"2026-05-26T09:49:50","modified_gmt":"2026-05-26T07:49:50","slug":"sap-security-notes-may-2026","status":"publish","type":"post","link":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/","title":{"rendered":"SAP Security Notes, May 2026"},"content":{"rendered":"<p><b>Through services such as SAP Security Assessment, Inprosec helps its clients improve the security levels of their SAP systems.<\/b><\/p>\n\n<p>&nbsp;<\/p>\n<h2>May 2026 Notes<\/h2>\n<h3>Monthly Summary and Highlights<\/h3>\n<div>\n<div class=\"elementToProof\">\n<div class=\"elementToProof\">\n<div class=\"elementToProof\">\n<div class=\"elementToProof\">\n<div class=\"elementToProof\">This month, the total number of notes was <b>15<\/b> (all new, with no updates), 5 fewer than in April. Two Hot News notes were published this month, one more than in the previous period. Regarding high-severity notes, there was 1, the same number as in April. Medium and low-severity notes will not be reviewed, so we will provide details on a total of <b>3 notes<\/b> (all those with a CVSS score of 7 or higher).<\/div>\n<div><\/div>\n<div class=\"elementToProof\">We have a total of <b>15 notes<\/b> for the entire month (all 15 are new and there are no updates from previous months).<\/div>\n<div><\/div>\n<div class=\"elementToProof\">We will review in detail a total of 3 notes, all of them high-severity and Hot News:<\/div>\n<div><\/div>\n<ol start=\"1\" data-path-to-node=\"10\">\n<li>\n<div class=\"elementToProof\" role=\"presentation\">The highest-severity note of the month (<b>CVSS <\/b><span style=\"color: #ff0000;\"><b>9.6<\/b><\/span>) is a Hot News note related to <b>&#8220;SQL injection vulnerability in SAP S\/4HANA (SAP Enterprise Search for ABAP)&#8221;<\/b>.<\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\">The second note with the same severity rating (<b>CVSS <\/b><span style=\"color: #ff0000;\"><b>9.6<\/b><\/span>) is another Hot News note related to <b>&#8220;Missing authentication check in SAP Commerce cloud configuration&#8221;<\/b>.<\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\">The final note we will review (<b>CVSS <\/b><span style=\"color: #ffcc00;\"><b>8.2<\/b><\/span>) is high severity and concerns <b>&#8220;OS Command Injection Vulnerability in SAP Forecasting &amp; Replenishment&#8221;<\/b>.<\/div>\n<\/li>\n<\/ol>\n<div class=\"elementToProof\">This month, the most common category was once again <b>&#8220;Missing Authorization Check&#8221;<\/b> (4\/15 in the Patch Day).<\/div>\n<div class=\"elementToProof\">The chart shows the classification of May\u2019s notes, as well as the evolution and classification of the previous five months (considering only SAP Security Tuesday \/ Patch Day notes).<\/div>\n<\/div>\n<\/div>\n<\/div>\n<div><\/div>\n<\/div>\n<\/div>\n<p><img decoding=\"async\" class=\"aligncenter wp-image-14477\" src=\"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP.jpg\" alt=\"\" width=\"803\" height=\"422\" srcset=\"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP.jpg 1200w, https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP-300x158.jpg 300w, https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP-1024x538.jpg 1024w, https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP-600x315.jpg 600w\" sizes=\"(max-width: 803px) 100vw, 803px\" \/><\/p>\n<h2>Full Details<\/h2>\n<p class=\"elementToProof\">The <b>full details of the most relevant notes<\/b> are as follows (in English):<\/p>\n<ol>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>SQL injection vulnerability in SAP S\/4HANA (SAP Enterprise Search for ABAP) (<\/b><a id=\"OWA576e16ea-1fcb-69e7-b9db-9a2ae773c38e\" class=\"OWAAutoLink\" title=\"https:\/\/me.sap.com\/notes\/3724838\" href=\"https:\/\/me.sap.com\/notes\/3724838\" data-auth=\"NotApplicable\" data-linkindex=\"0\"><b>3724838<\/b><\/a><b>)<\/b>: SAP S\/4HANA (SAP Enterprise Search for ABAP) contains a SQL injection vulnerability that allows an authenticated attacker to inject malicious SQL statements through user-controlled input. The application directly concatenates this malicious user input into SQL queries, which are then passed to the underlying database without proper validation or sanitization. Upon successful exploitation, an attacker may gain unauthorized access to sensitive database information and could potentially crash the application. This vulnerability has a high impact on the confidentiality and availability of the application, while integrity remains unaffected. <b>CVSS v3 Base Score <\/b><span style=\"color: #ff0000;\"><b>9,6<\/b><\/span><b>\/10 [<\/b><a id=\"OWAe5f8610b-408e-4c5c-aaed-74f6394cf9d7\" class=\"OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-34260\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-34260\" data-auth=\"NotApplicable\" data-linkindex=\"1\"><b>CVE-2026-34260<\/b><\/a><b>]<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>Missing authentication check in SAP Commerce cloud configuration (<\/b><a id=\"OWA417be359-6c4e-37cc-2720-65f0a25bcdc6\" class=\"OWAAutoLink\" title=\"https:\/\/me.sap.com\/notes\/3733064\" href=\"https:\/\/me.sap.com\/notes\/3733064\" data-auth=\"NotApplicable\" data-linkindex=\"2\"><b>3733064<\/b><\/a><b>)<\/b>: Due to improper Spring Security configuration, SAP Commerce Cloud allows an unauthenticated user to perform malicious configuration upload and code injection, resulting in arbitrary server-side code execution, leading to high impact on Confidentiality, Integrity, and Availability of the application. <b>CVSS v3 Base Score <\/b><span style=\"color: #ff0000;\"><b>9,6<\/b><\/span><b>\/10 [<\/b><a id=\"OWA92ab2016-d379-28fb-c9a2-a1f7824b719b\" class=\"OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-34263\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-34263\" data-auth=\"NotApplicable\" data-linkindex=\"3\"><b>CVE-2026-34263<\/b><\/a><b>]<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>OS Command Injection Vulnerability in SAP Forecasting &amp; Replenishment (<\/b><a id=\"OWAb8d76d47-724d-8479-b55b-44c664d0ccd8\" class=\"OWAAutoLink\" title=\"https:\/\/me.sap.com\/notes\/3732471\" href=\"https:\/\/me.sap.com\/notes\/3732471\" data-auth=\"NotApplicable\" data-linkindex=\"4\"><b>3732471<\/b><\/a><b>)<\/b>: Due to an OS Command Execution vulnerability in SAP Forecasting &amp; Replenishment, an authenticated attacker with administrative authorizations could abuse a non-remote-enabled function to execute arbitrary operating system commands. Successful exploitation could allow the attacker to read or modify any system data or shut down the system, resulting in a complete compromise of confidentiality, integrity, and availability. <b>CVSS v3 Base Score <\/b><span style=\"color: #ffcc00;\"><b>8,2<\/b><\/span><b>\/10 [<\/b><a id=\"OWA84968079-73a3-773d-348b-2680799f8a3d\" class=\"OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-34259\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-34259\" data-auth=\"NotApplicable\" data-linkindex=\"5\"><b>CVE-2026-34259<\/b><\/a><b>]<\/b><\/div>\n<\/li>\n<\/ol>\n<p><strong style=\"color: #014888; font-family: inherit; font-size: 1.6rem; letter-spacing: 0em;\">Reference Links<\/strong><\/p>\n<p>References from SAP and Onapsis (May):<\/p>\n<ul>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><a id=\"OWA088345b7-24f3-6779-6d78-382e85eeed93\" class=\"OWAAutoLink\" title=\"https:\/\/support.sap.com\/en\/my-support\/knowledge-base\/security-notes-news\/may-2026.html\" href=\"https:\/\/support.sap.com\/en\/my-support\/knowledge-base\/security-notes-news\/may-2026.html\" rel=\"noopener\" data-auth=\"NotApplicable\" data-ved=\"0CAAQ_4QMahgKEwigzuKy4LWUAxUAAAAAHQAAAAAQqgE\" data-hveid=\"0\" data-linkindex=\"6\">SAP Security Patch Day &#8211; May 2026<\/a><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><a id=\"OWA8e912947-0a9a-5292-1efc-bf6dd0527d21\" class=\"OWAAutoLink\" title=\"https:\/\/onapsis.com\/blog\/sap-security-patch-day-may-2026\/\" href=\"https:\/\/onapsis.com\/blog\/sap-security-patch-day-may-2026\/\" data-auth=\"NotApplicable\" data-linkindex=\"7\">SAP Patch Day: May 2026 &#8211; Onapsis<\/a><\/div>\n<\/li>\n<\/ul>\n<h2><strong style=\"color: #014888; font-family: inherit; font-size: 1.6rem; letter-spacing: 0em;\">Affected Resources<\/strong><\/h2>\n<div>The complete list of affected systems\/components is as follows:<\/div>\n<ul>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>SAP S\/4HANA (SAP Enterprise Search for ABAP):<\/b> SAP_BASIS 751, 752, 753, 754, 755, 756, 757, 758, 816, 918<\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>SAP Commerce Cloud:<\/b> HY_COM 2205, COM_CLOUD 2211, 2211-JDK21<\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>SAP Forecasting &amp; Replenishment:<\/b> SCM 702, 712, 713, 714<\/div>\n<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Through services such as SAP Security Assessment, Inprosec helps its clients improve the security levels of their SAP systems. &nbsp; May 2026 Notes Monthly Summary and Highlights This month, the total number of notes was 15 (all new, with no updates), 5 fewer than in April. Two Hot News notes were published this month, one&#8230;<\/p>\n","protected":false},"author":6,"featured_media":14478,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":""},"categories":[95,61],"tags":[150],"class_list":["post-14476","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-sap-notes","category-sap-security-en-2","tag-sap-notes"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v26.3 (Yoast SEO v27.6) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>SAP Security Notes, May 2026 - Inprosec<\/title>\n<meta name=\"description\" content=\"All updates to SAP systems notes from may 2026, to stay current and improve the security levels of your SAP systems.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"SAP Security Notes, May 2026\" \/>\n<meta property=\"og:description\" content=\"All updates to SAP systems notes from may 2026, to stay current and improve the security levels of your SAP systems.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/\" \/>\n<meta property=\"og:site_name\" content=\"Inprosec\" \/>\n<meta property=\"article:published_time\" content=\"2026-05-26T07:47:06+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-05-26T07:49:50+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"630\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Fernando Mosquera\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Fernando Mosquera\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/\"},\"author\":{\"name\":\"Fernando Mosquera\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/#\\\/schema\\\/person\\\/b05a40c0c3e81b819075dd95a10532e2\"},\"headline\":\"SAP Security Notes, May 2026\",\"datePublished\":\"2026-05-26T07:47:06+00:00\",\"dateModified\":\"2026-05-26T07:49:50+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/\"},\"wordCount\":554,\"commentCount\":0,\"image\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.inprosec.com\\\/wp-content\\\/uploads\\\/2026\\\/05\\\/Portada-Notas-SAP.jpg\",\"keywords\":[\"SAP Notes\"],\"articleSection\":[\"SAP Notes\",\"SAP Security\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/\",\"url\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/\",\"name\":\"SAP Security Notes, May 2026 - Inprosec\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.inprosec.com\\\/wp-content\\\/uploads\\\/2026\\\/05\\\/Portada-Notas-SAP.jpg\",\"datePublished\":\"2026-05-26T07:47:06+00:00\",\"dateModified\":\"2026-05-26T07:49:50+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/#\\\/schema\\\/person\\\/b05a40c0c3e81b819075dd95a10532e2\"},\"description\":\"All updates to SAP systems notes from may 2026, to stay current and improve the security levels of your SAP systems.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.inprosec.com\\\/wp-content\\\/uploads\\\/2026\\\/05\\\/Portada-Notas-SAP.jpg\",\"contentUrl\":\"https:\\\/\\\/www.inprosec.com\\\/wp-content\\\/uploads\\\/2026\\\/05\\\/Portada-Notas-SAP.jpg\",\"width\":1200,\"height\":630},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-may-2026\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"SAP Security Notes, May 2026\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/\",\"name\":\"Inprosec\",\"description\":\"Information security is our priority.\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/#\\\/schema\\\/person\\\/b05a40c0c3e81b819075dd95a10532e2\",\"name\":\"Fernando Mosquera\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g\",\"caption\":\"Fernando Mosquera\"}}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"SAP Security Notes, May 2026 - Inprosec","description":"All updates to SAP systems notes from may 2026, to stay current and improve the security levels of your SAP systems.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/","og_locale":"en_US","og_type":"article","og_title":"SAP Security Notes, May 2026","og_description":"All updates to SAP systems notes from may 2026, to stay current and improve the security levels of your SAP systems.","og_url":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/","og_site_name":"Inprosec","article_published_time":"2026-05-26T07:47:06+00:00","article_modified_time":"2026-05-26T07:49:50+00:00","og_image":[{"width":1200,"height":630,"url":"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP.jpg","type":"image\/jpeg"}],"author":"Fernando Mosquera","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Fernando Mosquera","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/#article","isPartOf":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/"},"author":{"name":"Fernando Mosquera","@id":"https:\/\/www.inprosec.com\/en\/#\/schema\/person\/b05a40c0c3e81b819075dd95a10532e2"},"headline":"SAP Security Notes, May 2026","datePublished":"2026-05-26T07:47:06+00:00","dateModified":"2026-05-26T07:49:50+00:00","mainEntityOfPage":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/"},"wordCount":554,"commentCount":0,"image":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/#primaryimage"},"thumbnailUrl":"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP.jpg","keywords":["SAP Notes"],"articleSection":["SAP Notes","SAP Security"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/","url":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/","name":"SAP Security Notes, May 2026 - Inprosec","isPartOf":{"@id":"https:\/\/www.inprosec.com\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/#primaryimage"},"image":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/#primaryimage"},"thumbnailUrl":"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP.jpg","datePublished":"2026-05-26T07:47:06+00:00","dateModified":"2026-05-26T07:49:50+00:00","author":{"@id":"https:\/\/www.inprosec.com\/en\/#\/schema\/person\/b05a40c0c3e81b819075dd95a10532e2"},"description":"All updates to SAP systems notes from may 2026, to stay current and improve the security levels of your SAP systems.","breadcrumb":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/#primaryimage","url":"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP.jpg","contentUrl":"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/05\/Portada-Notas-SAP.jpg","width":1200,"height":630},{"@type":"BreadcrumbList","@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-may-2026\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.inprosec.com\/en\/"},{"@type":"ListItem","position":2,"name":"SAP Security Notes, May 2026"}]},{"@type":"WebSite","@id":"https:\/\/www.inprosec.com\/en\/#website","url":"https:\/\/www.inprosec.com\/en\/","name":"Inprosec","description":"Information security is our priority.","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.inprosec.com\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.inprosec.com\/en\/#\/schema\/person\/b05a40c0c3e81b819075dd95a10532e2","name":"Fernando Mosquera","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g","caption":"Fernando Mosquera"}}]}},"_links":{"self":[{"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/posts\/14476","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/comments?post=14476"}],"version-history":[{"count":1,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/posts\/14476\/revisions"}],"predecessor-version":[{"id":14480,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/posts\/14476\/revisions\/14480"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/media\/14478"}],"wp:attachment":[{"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/media?parent=14476"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/categories?post=14476"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/tags?post=14476"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}