< BACK TO NEWS
importantSYS.SOURCE: The Hacker News2026-08-12T13:01:40+05:30

Critical SAP Commerce Cloud Vulnerability Allows Unauthenticated Code Execution

A critical vulnerability (CVSS 10.0) in SAP Commerce Cloud allows unauthenticated attackers to execute arbitrary code through insufficient input validation. SAP has released patches and temporary workarounds to mitigate the flaw, which affects enterprise systems globally.

SAP has released patches to address a maximum-severity security flaw impacting Commerce Cloud (Data Hub Adapter) that could result in arbitrary code execution.

The vulnerability, assigned the CVE identifier CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It has been described as a case of insufficient authorization checks and input validation.

"SAP Commerce Cloud allows an

Read original article

*** END OF TRANSMISSION ***