CVE-2026-23689Disclosure(sap / advanced_planning_and_optimization)

LOWCVSS 7.7 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Due to an uncontrolled resource consumption (Denial of Service) vulnerability, an authenticated attacker with regular user privileges and network access can repeatedly invoke a remote-enabled function module with an excessively large loop-control parameter. This triggers prolonged loop execution that consumes excessive system resources, potentially rendering the system unavailable. Successful exploitation results in a denial-of-service condition that impacts availability, while confidentiality and integrity remain unaffected.

0.0/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-606CWE-770

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • advanced_planning_and_optimization
  • supply_chain_management

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-02-10); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
advanced_planning_and_optimizationsupply_chain_management

6 versions affected across 2 products

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-02-10: 2Mentions · 2026-02-15: 1Technical Details · 2026-02-10: 1Technical Details · 2026-02-15: 102-1002-15
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-102
Disclosure1General1
2026-02-151
Disclosure1
Full discourse3 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-23689 Authenticated Denial of Service via Resource Consumption in Remote Function Module https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-23689

    Post summary

    The text announces CVE-2026-23689, detailing an authenticated denial‑of‑service vulnerability caused by resource consumption in a remote function module, but does not provide PoC, exploit, patch, or evidence of active exploitation.

    0001054
    4.0K followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-23689 (CVSS:7.7, HIGH) is Undergoing Analysis. Due to an uncontrolled resource consumption (Denial of Service) vulnerability, an authenticated attacker with regular us..https://nvd.nist.gov/vuln/detail/CVE-2026-23689 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet announces the identification of CVE-2026-23689, a high‑severity denial‑of‑service flaw caused by uncontrolled resource consumption that can be exploited by an authenticated user.

    0000034
    171 followersView on X
  • RedPacket Security@RedPacketSec
    General

    CVE Alert: CVE-2026-23689 - SAP_SE - SAP Supply Chain Management - https://www.redpacketsecurity.com/cve-alert-cve-2026-23689-sap-se-sap-supply-chain-management/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-23689 #sap-se #sap-supply-chain-management

    Post summary

    The post merely announces a CVE alert link for CVE‑2026‑23689 with no further details, exploit info, or mitigation guidance.

    0000090
    3.5K followersView on X
CPE platform detail6 entries

6 of 6 entries

PartVendorProductVersionTarget SWTarget HW
Appsapadvanced_planning_and_optimization713--
Appsapadvanced_planning_and_optimization714--
Appsapsupply_chain_management700--
Appsapsupply_chain_management701--
Appsapsupply_chain_management702--
Appsapsupply_chain_management712--

Explore more