Known vulnerabilities in SUSE Linux Enterprise Server for SAP Applications 15 - page 140

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_for_sap_applications_15:*:*:*:*:*:*:*:*
Total vulnerabilities: 13007
Public exploits: 249
Known exploited (KEV): 60
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server for SAP Applications 15 SUSE Linux Enterprise Server for SAP Applications 15 is affected by 13007 known vulnerabilities: 36 critical, 934 high, 2278 medium, 9757 low Critical High Medium Low

Vulnerabilities (13007)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU122663 - Stack-based buffer overflow
CVE-2026-0719
CWE-121 Critical
No
No
- 11.02.2026 SB2026021138
SB2026021139
SB2026021140
and 34 more
#VU122662 - Stack-based buffer overflow
CVE-2026-1761
CWE-121 Critical
No
No
- 11.02.2026 SB2026021138
SB2026021143
SB2026021144
and 33 more
#VU122660 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2026-1536
CWE-93 Medium
No
No
- 11.02.2026 SB2026021137
SB2026021174
SB2026021224
and 5 more
#VU122512 - Out-of-bounds write
CVE-2026-22852
CWE-787 High
No
No
- 10.02.2026 SB2026021009
SB2026021094
SB2026021095
and 23 more
#VU122510 - Out-of-bounds read
CVE-2026-22859
CWE-125 Low
No
No
- 10.02.2026 SB2026021009
SB2026021094
SB2026021095
and 21 more
#VU122507 - Use After Free
CVE-2026-22856
CWE-416 High
No
No
- 10.02.2026 SB2026021009
SB2026021094
SB2026021095
and 23 more
#VU122505 - Heap-based Buffer Overflow
CVE-2026-22854
CWE-122 High
No
No
- 10.02.2026 SB2026021009
SB2026021094
SB2026021095
and 23 more
#VU122261 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2026-1312
CWE-89 High
No
No
- 03.02.2026 SB2026020349
SB2026020378
SB2026020686
and 15 more
#VU122260 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2026-1287
CWE-89 High
No
No
- 03.02.2026 SB2026020349
SB2026020378
SB2026020686
and 14 more
#VU122259 - Resource exhaustion
CVE-2026-1285
CWE-400 Medium
No
No
- 03.02.2026 SB2026020349
SB2026020378
SB2026020686
and 15 more
#VU122258 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2026-1207
CWE-89 High
No
No
- 03.02.2026 SB2026020349
SB2026020378
SB2026020686
and 15 more
#VU122100 - Stack-based buffer overflow
CVE-2025-68670
CWE-121 High
No
No
- 28.01.2026 SB2026012846
SB2026012847
SB2026012848
and 8 more
#VU121943 - Heap-based Buffer Overflow
CVE-2026-23530
CWE-122 High
Available
No
- 22.01.2026 SB2026012231
SB2026020426
SB2026020599
and 22 more
#VU121929 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-24049
CWE-22 Medium
Available
No
- 22.01.2026 SB2026012210
SB2026012503
SB2026012761
and 20 more
#VU121674 - Heap-based Buffer Overflow
CVE-2026-23876
CWE-122 High
No
No
- 20.01.2026 SB2026012004
SB2026012343
SB2026012344
and 13 more
#VU121673 - Stack-based buffer overflow
CVE-2026-23874
CWE-121 Low
No
No
- 20.01.2026 SB2026012004
SB2026012343
SB2026012344
and 9 more
#VU121670 - Release of invalid pointer or reference
CVE-2026-22770
CWE-763 High
No
No
- 20.01.2026 SB2026012004
SB2026012343
SB2026012344
and 7 more
#VU121669 - NULL Pointer Dereference
CVE-2026-23952
CWE-476 Medium
No
No
- 20.01.2026 SB2026012004
SB2026012343
SB2026012344
and 11 more
#VU119956 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-14523
CWE-444 Medium
No
No
- 15.12.2025 SB2025121511
SB2026011201
SB2026011202
and 36 more
#VU115220 - Integer overflow
CVE-2025-7709
CWE-190 Medium
No
No
- 15.09.2025 SB2025091576
SB2025091580
SB20260206117
and 3 more


Showing elements 2781 - 2800 out of 13007