low2026-05-12SAP HANACVE-2026-40131
SQL Injection in SAP HANA HDI Deploy Library
SAP HANA HDI Deploy Library
Our Take
Low severity, narrow product. Include in your next quarterly HANA tooling update.
Vulnerability Detail
SQL injection vulnerability in the SAP HANA Deployment Infrastructure (HDI) Deploy Library. Limited exploit conditions reduce severity to low.
Patch Action
Apply SAP Note 3726962.
Affected Versions
XS_HDI_DEPLOYER 1.00
Patch Info