{"id":14519,"date":"2026-06-16T10:30:26","date_gmt":"2026-06-16T08:30:26","guid":{"rendered":"https:\/\/www.inprosec.com\/?p=14519"},"modified":"2026-06-16T10:30:26","modified_gmt":"2026-06-16T08:30:26","slug":"sap-security-notes-june-2026","status":"publish","type":"post","link":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/","title":{"rendered":"SAP Security Notes, June 2026"},"content":{"rendered":"<p><b>Through services such as SAP Security Assessment, Inprosec helps its clients improve the security levels of their SAP systems.<\/b><\/p>\n\n<p>&nbsp;<\/p>\n<h2>June 2026 Notes<\/h2>\n<h3>Monthly Summary and Highlights<\/h3>\n<div>\n<div class=\"elementToProof\">\n<div class=\"elementToProof\">\n<div class=\"elementToProof\">\n<div class=\"elementToProof\">\n<div class=\"elementToProof\">\n<div class=\"elementToProof\">This month the total number has been <b>15 notes<\/b> (all new, with no updates), the same amount as in May. This month 4 Hot News have been published, two more than in the previous period. As for high-criticality notes, there are 2, one more than in May. Medium and low notes will not be reviewed, so we will provide detail on a total of <b>6 notes<\/b> (all those with a CVSS score of 7 or higher).<\/div>\n<div><\/div>\n<div class=\"elementToProof\">We have a total of <b>15 notes<\/b> for the entire month (all 15 are new and there are no updates to notes from previous months).<\/div>\n<div><\/div>\n<div class=\"elementToProof\">We will review in detail a total of 6 notes, all of high criticality and Hot News:<\/div>\n<div><\/div>\n<ol start=\"1\" data-path-to-node=\"9\">\n<li>\n<div class=\"elementToProof\" role=\"presentation\">The highest-criticality note of the month (<b>CVSS<\/b> <span style=\"color: #ff0000;\"><b>9.9<\/b><\/span>) is a Hot News and is related to <b>&#8220;XML Signature Wrapping in SAML Authentication in SAP NetWeaver AS ABAP and ABAP Platform&#8221;<\/b>.<\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\">The second note in criticality (<b>CVSS <\/b><span style=\"color: #ff0000;\"><b>9.8<\/b><\/span>) is another Hot News and is related to <b>&#8220;Memory Corruption vulnerability in Application Server ABAP of SAP NetWeaver and ABAP Platform&#8221;.<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\">The third note in criticality (<b>CVSS <\/b><span style=\"color: #ff0000;\"><b>9.1<\/b><\/span>) is another Hot News and is related to <b>&#8220;Potential Spring Security vulnerability within SAP Commerce Cloud and SAP Data Hub&#8221;.<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\">The fourth note in criticality (<b>CVSS <\/b><span style=\"color: #ff0000;\"><b>9.0<\/b><\/span>) is the last Hot News of the month and is related to <b>&#8220;Directory Traversal vulnerability in SAP NetWeaver Application Server Java (Web Container)&#8221;.<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\">The fifth note we will review (<b>CVSS <\/b><span style=\"color: #ffcc00;\"><b>7.4<\/b><\/span>) is of high criticality and covers <b>&#8220;Multiple vulnerabilities in Apache Tomcat within SAP Commerce Cloud&#8221;.<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\">The last note we will review (<b>CVSS <\/b><span style=\"color: #ffcc00;\"><b>7.1<\/b><\/span>) is of high criticality and covers <b>&#8220;Missing Authorization check in Application Server ABAP of SAP NetWeaver and ABAP Platform&#8221;.<\/b><\/div>\n<\/li>\n<\/ol>\n<div class=\"elementToProof\">This month the most predominant type has been <b>&#8220;Missing Authorization check&#8221;<\/b> (3\/15 in the patch day).<\/div>\n<div class=\"elementToProof\">In the chart below we can see the classification of the June notes, as well as the trend and classification for the previous 5 months (only notes from the Sec. Tuesday \/ Patch Day \u2013 by SAP):<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<div><\/div>\n<\/div>\n<\/div>\n<p><img decoding=\"async\" class=\"aligncenter wp-image-14520\" src=\"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026.jpg\" alt=\"\" width=\"780\" height=\"410\" srcset=\"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026.jpg 1200w, https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026-300x158.jpg 300w, https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026-1024x538.jpg 1024w, https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026-600x315.jpg 600w\" sizes=\"(max-width: 780px) 100vw, 780px\" \/><\/p>\n<h2>Full Detail<\/h2>\n<p class=\"elementToProof\">The <b>full detail of the most relevant notes<\/b> is as follows (in English):<\/p>\n<ol>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>XML Signature Wrapping in SAML Authentication in SAP NetWeaver AS ABAP and ABAP Platform (<\/b><a id=\"OWA0623d94e-67a0-93bb-fac9-f5cfd441097d\" class=\"x_OWAAutoLink\" title=\"https:\/\/me.sap.com\/notes\/3746332\" href=\"https:\/\/me.sap.com\/notes\/3746332\" data-auth=\"NotApplicable\" data-linkindex=\"0\"><b>3746332<\/b><\/a><b>)<\/b>: SAP NetWeaver Application Server ABAP and ABAP Platform allows an authenticated attacker with normal privileges to obtain a valid signed message and send modified signed XML documents to the verifier. This may result in acceptance of tampered identity information leading to unauthorised access to sensitive user data and potential disruption of normal system usage. This causes a high impact on confidentiality, integrity and availability of the application. A temporary workaround is available. <b>CVSS v3 Base Score <\/b><span style=\"color: #ff0000;\"><b>9.9<\/b><\/span><b>\/10 [<\/b><a id=\"OWAfde2243b-2c90-a2aa-b1fa-4993be2c2035\" class=\"x_OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-44748\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-44748\" data-auth=\"NotApplicable\" data-linkindex=\"1\"><b>CVE-2026-44748<\/b><\/a><b>]<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>Memory Corruption vulnerability in Application Server ABAP of SAP NetWeaver and ABAP Platform (<\/b><a id=\"OWA71ff72d9-cb8a-7134-bd9a-9a66632781dc\" class=\"x_OWAAutoLink\" title=\"https:\/\/me.sap.com\/notes\/3717897\" href=\"https:\/\/me.sap.com\/notes\/3717897\" data-auth=\"NotApplicable\" data-linkindex=\"2\"><b>3717897<\/b><\/a><b>)<\/b>: Due to improper RFC protocol validation in the SAP Kernel used by the Application Server ABAP of SAP NetWeaver and ABAP Platform, an unauthenticated attacker can send a crafted RFC request that exploits logical errors in memory management, leading to memory corruption. This could lead to a high impact on the confidentiality, integrity, and availability of the application. <b>CVSS v3 Base Score <\/b><span style=\"color: #ff0000;\"><b>9.8<\/b><\/span><b>\/10 [<\/b><a id=\"OWAf4ff8a51-669e-3508-cc8f-3af21ddaaa38\" class=\"x_OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-27671\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-27671\" data-auth=\"NotApplicable\" data-linkindex=\"3\"><b>CVE-2026-27671<\/b><\/a><b>]<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>Potential Spring Security vulnerability within SAP Commerce Cloud and SAP Data Hub (<\/b><a id=\"OWA87ef9a32-e123-226b-1803-e7a8fde7c6a7\" class=\"x_OWAAutoLink\" title=\"https:\/\/me.sap.com\/notes\/3748262\" href=\"https:\/\/me.sap.com\/notes\/3748262\" data-auth=\"NotApplicable\" data-linkindex=\"4\"><b>3748262<\/b><\/a><b>)<\/b>: SAP Commerce Cloud and SAP Data Hub use a version of Spring Security that could be vulnerable to CVE-2026-22732. Under certain conditions Spring Security might not write HTTP response headers, including important security headers, which might lead to high impact on confidentiality and integrity, no impact on availability. <b>CVSS v3 Base Score <\/b><span style=\"color: #ff0000;\"><b>9.1<\/b><\/span><b>\/10 [<\/b><a id=\"OWA0e7fd270-0b92-0f0d-5ee8-3bcd44eb8004\" class=\"x_OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-22732\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-22732\" data-auth=\"NotApplicable\" data-linkindex=\"5\"><b>CVE-2026-22732<\/b><\/a><b>]<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>Directory Traversal vulnerability in SAP NetWeaver Application Server Java (Web Container) (<\/b><a id=\"OWA7e66186b-ad73-cd62-eb83-6aa7e97cc948\" class=\"x_OWAAutoLink\" title=\"https:\/\/me.sap.com\/notes\/3727078\" href=\"https:\/\/me.sap.com\/notes\/3727078\" data-auth=\"NotApplicable\" data-linkindex=\"6\"><b>3727078<\/b><\/a><b>)<\/b>: SAP NetWeaver Application Server Java (Web Container) allows an unauthenticated attacker to craft a malicious HTTP logon request that manipulates file inclusion parameters, enabling path traversal and processing of the included file. Processing the included file could allow the attacker to view or modify sensitive information or render any part of the local system unavailable. <b>CVSS v3 Base Score <\/b><span style=\"color: #ff0000;\"><b>9.0<\/b><\/span><b>\/10 [<\/b><a id=\"OWA75831699-c4e8-84c2-ae53-e5f5afc9d51a\" class=\"x_OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-40128\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-40128\" data-auth=\"NotApplicable\" data-linkindex=\"7\"><b>CVE-2026-40128<\/b><\/a><b>]<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>Multiple vulnerabilities in Apache Tomcat within SAP Commerce Cloud (<\/b><a id=\"OWA9b0f0a3c-05c1-9a52-c3ef-9fa830b06d72\" class=\"x_OWAAutoLink\" title=\"https:\/\/me.sap.com\/notes\/3747484\" href=\"https:\/\/me.sap.com\/notes\/3747484\" data-auth=\"NotApplicable\" data-linkindex=\"8\"><b>3747484<\/b><\/a><b>)<\/b>: This Security note addresses multiple known vulnerabilities in Apache Tomcat within SAP Commerce Cloud. SAP Commerce Cloud uses a version of Apache Tomcat that is affected by multiple known vulnerabilities impacting certificate-based authentication and validation mechanisms. These flaws may allow unauthorised access, enable attackers to bypass client certificate enforcement, or use revoked certificates for authentication. These conditions arise only under specific non-default configurations and have a high impact on confidentiality and integrity of the application, while availability is not impacted. A temporary workaround is available. <b>CVSS v3 Base Score <\/b><span style=\"color: #ffcc00;\"><b>7.4<\/b><\/span><b>\/10 [<\/b><a id=\"OWAcf76af27-b167-e3d7-c0c0-e9bf129ffdff\" class=\"x_OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-29145\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-29145\" data-auth=\"NotApplicable\" data-linkindex=\"9\"><b>CVE-2026-29145<\/b><\/a><b>, <\/b><a id=\"OWAd772e540-a7bb-aee4-1020-0ce9a16e5b53\" class=\"x_OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-66614\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-66614\" data-auth=\"NotApplicable\" data-linkindex=\"10\"><b>CVE-2025-66614<\/b><\/a><b>, <\/b><a id=\"OWA5c9be1a0-6cf7-6e8e-5e97-ce527e35752d\" class=\"x_OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-24734\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-24734\" data-auth=\"NotApplicable\" data-linkindex=\"11\"><b>CVE-2026-24734<\/b><\/a><b>]<\/b><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>Missing Authorization check in Application Server ABAP of SAP NetWeaver and ABAP Platform (<\/b><a id=\"OWAbcbafcce-8226-794f-3ab8-fd4d0217bcef\" class=\"x_OWAAutoLink\" title=\"https:\/\/me.sap.com\/notes\/3735546\" href=\"https:\/\/me.sap.com\/notes\/3735546\" data-auth=\"NotApplicable\" data-linkindex=\"12\"><b>3735546<\/b><\/a><b>)<\/b>: Application server ABAP does not perform necessary authorisation checks for an authenticated user allowing an attacker to execute a report generation command which could overwrite information belonging to another user, resulting in escalation of privileges. This has high impact on integrity with low impact on availability and no impact on confidentiality of the application. <b>CVSS v3 Base Score <\/b><span style=\"color: #ffcc00;\"><b>7.1<\/b><\/span><b>\/10 [<\/b><a id=\"OWA3912a597-32ad-c642-2502-c4c611b3271f\" class=\"x_OWAAutoLink\" title=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-44751\" href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-44751\" data-auth=\"NotApplicable\" data-linkindex=\"13\"><b>CVE-2026-44751<\/b><\/a><b>]<\/b><\/div>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<p><strong style=\"color: #014888; font-family: inherit; font-size: 1.6rem; letter-spacing: 0em;\">Reference Links<\/strong><\/p>\n<p>References, in English, from SAP and Onapsis:<\/p>\n<div class=\"elementToProof\" role=\"presentation\">\n<ul>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><a id=\"OWA12bf71ea-90a5-f92c-25e5-8d5bc236edc0\" class=\"x_OWAAutoLink\" title=\"https:\/\/support.sap.com\/en\/my-support\/knowledge-base\/security-notes-news\/june-2026.html\" href=\"https:\/\/support.sap.com\/en\/my-support\/knowledge-base\/security-notes-news\/june-2026.html\" data-auth=\"NotApplicable\" data-linkindex=\"14\">SAP Security Patch Day &#8211; June 2026<\/a><\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><a id=\"OWA9440f61a-8c84-f643-1cc2-9a7126995c97\" class=\"x_OWAAutoLink\" title=\"https:\/\/onapsis.com\/blog\/sap-security-patch-day-june-2026\/?_gl=1*1c6b63h*_up*MQ..*_ga*MTc5MTQ0NTMwMy4xNzgxMTM0NDc2*_ga_2HEPRR6DH5*czE3ODExMzQ0NzUkbzEkZzEkdDE3ODExMzQ0ODIkajUzJGwwJGg1ODUzNjgzNzk.\" href=\"https:\/\/onapsis.com\/blog\/sap-security-patch-day-june-2026\/?_gl=1*1c6b63h*_up*MQ..*_ga*MTc5MTQ0NTMwMy4xNzgxMTM0NDc2*_ga_2HEPRR6DH5*czE3ODExMzQ0NzUkbzEkZzEkdDE3ODExMzQ0ODIkajUzJGwwJGg1ODUzNjgzNzk.\" data-auth=\"NotApplicable\" data-linkindex=\"15\">SAP Patch Day: June 2026 &#8211; Onapsis<\/a><\/div>\n<\/li>\n<\/ul>\n<\/div>\n<h2><strong style=\"color: #014888; font-family: inherit; font-size: 1.6rem; letter-spacing: 0em;\">Affected Resources<\/strong><\/h2>\n<div>The complete list of affected systems\/components is as follows:<\/div>\n<div><\/div>\n<ul>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>SAP NetWeaver AS ABAP and ABAP Platform (SAML Authentication):<\/b> SAP_BASIS 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 758, 804, 816, 918, 919<\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>SAP NetWeaver AS ABAP and ABAP Platform (Memory Corruption):<\/b> KRNL64NUC 7.22, 7.22EXT, KRNL64UC 7.22, 722EXT, 7.53, KERNEL 7.22, 7.53, 7.54, 7.77, 7.89, 7.93, 9.16, 9.18, 91.9<\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>SAP Commerce Cloud and SAP Data Hub:<\/b> HY_COM 2205, HY_DHUB 2205, COM_CLOUD 2211, 2211-JDK21, DHUB_CLOUD 2211<\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>SAP NetWeaver Application Server Java (Web Container):<\/b> ENGINEAPI 7.50<\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>SAP Commerce Cloud (Apache Tomcat):<\/b> HY_COM 2205, COM_CLOUD 2211, 2211-JDK21<\/div>\n<\/li>\n<li>\n<div class=\"elementToProof\" role=\"presentation\"><b>SAP NetWeaver AS ABAP and ABAP Platform (Missing Authorization):<\/b> SAP_BASIS 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 758, 816<\/div>\n<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Through services such as SAP Security Assessment, Inprosec helps its clients improve the security levels of their SAP systems. &nbsp; June 2026 Notes Monthly Summary and Highlights This month the total number has been 15 notes (all new, with no updates), the same amount as in May. This month 4 Hot News have been published,&#8230;<\/p>\n","protected":false},"author":6,"featured_media":14521,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":""},"categories":[95,61],"tags":[150],"class_list":["post-14519","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-sap-notes","category-sap-security-en-2","tag-sap-notes"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v26.3 (Yoast SEO v27.8) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>SAP Security Notes, June 2026 - Inprosec<\/title>\n<meta name=\"description\" content=\"All updates to SAP systems notes from june 2026, to stay current and improve the security levels of your SAP systems.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"SAP Security Notes, June 2026\" \/>\n<meta property=\"og:description\" content=\"All updates to SAP systems notes from june 2026, to stay current and improve the security levels of your SAP systems.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/\" \/>\n<meta property=\"og:site_name\" content=\"Inprosec\" \/>\n<meta property=\"article:published_time\" content=\"2026-06-16T08:30:26+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"630\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Fernando Mosquera\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Fernando Mosquera\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"6 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/\"},\"author\":{\"name\":\"Fernando Mosquera\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/#\\\/schema\\\/person\\\/b05a40c0c3e81b819075dd95a10532e2\"},\"headline\":\"SAP Security Notes, June 2026\",\"datePublished\":\"2026-06-16T08:30:26+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/\"},\"wordCount\":955,\"commentCount\":0,\"image\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.inprosec.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/notas-sap-junio-2026.jpg\",\"keywords\":[\"SAP Notes\"],\"articleSection\":[\"SAP Notes\",\"SAP Security\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/\",\"url\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/\",\"name\":\"SAP Security Notes, June 2026 - Inprosec\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.inprosec.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/notas-sap-junio-2026.jpg\",\"datePublished\":\"2026-06-16T08:30:26+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/#\\\/schema\\\/person\\\/b05a40c0c3e81b819075dd95a10532e2\"},\"description\":\"All updates to SAP systems notes from june 2026, to stay current and improve the security levels of your SAP systems.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.inprosec.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/notas-sap-junio-2026.jpg\",\"contentUrl\":\"https:\\\/\\\/www.inprosec.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/notas-sap-junio-2026.jpg\",\"width\":1200,\"height\":630},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/sap-security-notes-june-2026\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"SAP Security Notes, June 2026\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/\",\"name\":\"Inprosec\",\"description\":\"Information security is our priority.\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.inprosec.com\\\/en\\\/#\\\/schema\\\/person\\\/b05a40c0c3e81b819075dd95a10532e2\",\"name\":\"Fernando Mosquera\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g\",\"caption\":\"Fernando Mosquera\"}}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"SAP Security Notes, June 2026 - Inprosec","description":"All updates to SAP systems notes from june 2026, to stay current and improve the security levels of your SAP systems.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/","og_locale":"en_US","og_type":"article","og_title":"SAP Security Notes, June 2026","og_description":"All updates to SAP systems notes from june 2026, to stay current and improve the security levels of your SAP systems.","og_url":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/","og_site_name":"Inprosec","article_published_time":"2026-06-16T08:30:26+00:00","og_image":[{"width":1200,"height":630,"url":"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026.jpg","type":"image\/jpeg"}],"author":"Fernando Mosquera","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Fernando Mosquera","Est. reading time":"6 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/#article","isPartOf":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/"},"author":{"name":"Fernando Mosquera","@id":"https:\/\/www.inprosec.com\/en\/#\/schema\/person\/b05a40c0c3e81b819075dd95a10532e2"},"headline":"SAP Security Notes, June 2026","datePublished":"2026-06-16T08:30:26+00:00","mainEntityOfPage":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/"},"wordCount":955,"commentCount":0,"image":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/#primaryimage"},"thumbnailUrl":"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026.jpg","keywords":["SAP Notes"],"articleSection":["SAP Notes","SAP Security"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/","url":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/","name":"SAP Security Notes, June 2026 - Inprosec","isPartOf":{"@id":"https:\/\/www.inprosec.com\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/#primaryimage"},"image":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/#primaryimage"},"thumbnailUrl":"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026.jpg","datePublished":"2026-06-16T08:30:26+00:00","author":{"@id":"https:\/\/www.inprosec.com\/en\/#\/schema\/person\/b05a40c0c3e81b819075dd95a10532e2"},"description":"All updates to SAP systems notes from june 2026, to stay current and improve the security levels of your SAP systems.","breadcrumb":{"@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/#primaryimage","url":"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026.jpg","contentUrl":"https:\/\/www.inprosec.com\/wp-content\/uploads\/2026\/06\/notas-sap-junio-2026.jpg","width":1200,"height":630},{"@type":"BreadcrumbList","@id":"https:\/\/www.inprosec.com\/en\/sap-security-notes-june-2026\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.inprosec.com\/en\/"},{"@type":"ListItem","position":2,"name":"SAP Security Notes, June 2026"}]},{"@type":"WebSite","@id":"https:\/\/www.inprosec.com\/en\/#website","url":"https:\/\/www.inprosec.com\/en\/","name":"Inprosec","description":"Information security is our priority.","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.inprosec.com\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.inprosec.com\/en\/#\/schema\/person\/b05a40c0c3e81b819075dd95a10532e2","name":"Fernando Mosquera","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/199e6c54b14f5b5ddf7e11a9bb0b455c3bed7a9a1a738b7be5c2572878e69d1a?s=96&d=mm&r=g","caption":"Fernando Mosquera"}}]}},"_links":{"self":[{"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/posts\/14519","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/comments?post=14519"}],"version-history":[{"count":1,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/posts\/14519\/revisions"}],"predecessor-version":[{"id":14522,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/posts\/14519\/revisions\/14522"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/media\/14521"}],"wp:attachment":[{"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/media?parent=14519"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/categories?post=14519"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.inprosec.com\/en\/wp-json\/wp\/v2\/tags?post=14519"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}