importantSYS.SOURCE: The Hacker News• 2026-08-15T14:08:46+05:30
SAP Commerce Cloud Critical Vulnerability CVE-2026-58231 Exploited Post-Patch Release
A critical vulnerability (CVSS 10.0) in SAP Commerce Cloud, CVE-2026-58231, is being actively exploited days after a patch was released, allowing arbitrary code execution through insufficient authorization checks. SAP advises immediate patching and temporary IP filtering to mitigate risks.
A maximum-severity security vulnerability impacting SAP Commerce Cloud is witnessing active exploitation efforts.
The vulnerability, tracked as CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It relates to an instance of insufficient authorization checks and input validation.
"SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit
*** END OF TRANSMISSION ***