CVE-2026-23681 — Due to missing authorization check in a function module in SAP Support Tools Plug-In, an authenticated attacker could invoke specific function modules to retrieve information about the system and its — CVE Database · The Intelligence Room