Get all your news in one place.
100's of premium titles.
One app.
Start reading
TechRadar
TechRadar
Sead Fadilpašić

Three critical vulnerabilities patched by SAP - here's what we know

Cybersecurity ensures data protection on internet. Data encryption, firewall, encrypted network, VPN, secure access and authentication defend against malware, hacking, cyber crime and digital threat.
  • SAP’s December update patched 14 flaws, including three critical vulnerabilities in key products
  • CVE‑2025‑42880 (9.9) in SAP Solution Manager allows code injection and full system compromise
  • CVE‑2025‑55754 (9.6) in Apache Tomcat and CVE‑2025‑42928 (9.1) in SAP jConnect enable remote code execution under certain conditions

SAP has released its December cumulative security update, through which it fixed 14 vulnerabilities found in different products. Among them are three critical-severity flaws which should be addressed without delay.

Sign up to read this article
Read news from 100's of titles, curated specifically for you.
Already a member? Sign in here
Related Stories
Top stories on inkl right now
One subscription that gives you access to news from hundreds of sites
Already a member? Sign in here
Our Picks
Fourteen days free
Download the app
One app. One membership.
100+ trusted global sources.