< BACK TO NEWS
importantSYS.SOURCE: The Hacker News2026-08-15T14:08:46+05:30

SAP Commerce Cloud Critical Vulnerability CVE-2026-58231 Exploited Post-Patch Release

A critical vulnerability (CVSS 10.0) in SAP Commerce Cloud, CVE-2026-58231, is being actively exploited days after a patch was released, allowing arbitrary code execution through insufficient authorization checks. SAP advises immediate patching and temporary IP filtering to mitigate risks.

A maximum-severity security vulnerability impacting SAP Commerce Cloud is witnessing active exploitation efforts.

The vulnerability, tracked as CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It relates to an instance of insufficient authorization checks and input validation.

"SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit

Read original article

*** END OF TRANSMISSION ***