VYPR
Medium severity6.1NVD Advisory· Published Mar 10, 2022· Updated Jun 17, 2026

CVE-2022-26101

CVE-2022-26101

Description

Fiori launchpad - versions 754, 755, 756, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:a:sap:fiori_launchpad:754:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:sap:fiori_launchpad:754:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:fiori_launchpad:755:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:fiori_launchpad:756:*:*:*:*:*:*:*
    • (no CPE)range: 754, 755, 756
  • SAP SE/Fiori Launchpadv5
    Range: < 754

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.