CVE-2026-66773

Summary

A malicious or compromised OData service could disclose sensitive authentication information and inject untrusted data into the application, which may leads to a high impact on confidentiality and low impact on integrity and no impact on Availability.

Affected Software

VendorProductVersion RangeStatus
SAP_SEOdatapyodata (pip) < 1.11.2affected

Weaknesses

  • CWE-601: CWE-601: URL Redirection to Untrusted Site

References