CVE-2026-24328 – Open Redirection vulnerability in Business Server Pages Application (TAF_APPLAUNCHER)
CVE ID : CVE-2026-24328
Published : Feb. 10, 2026, 3:04 a.m. | 1 hour, 17 minutes ago
Description : SAP TAF_APPLAUNCHER within Business Server Pages allows unauthenticated attacker to craft malicious links that, when clicked by a victim, redirect them to attacker?controlled sites, potentially exposing or altering sensitive information in the victim�s browser. This results in a low impact on confidentiality and integrity, with no impact on the availability of the application.
Severity: 6.1 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more…