← Back to feed
Vulnerabilities & PatchesEmerging1 sourceAug 15, 2026 · 17:14via Security Affairs

SAP Commerce Cloud CVE-2026-58231 Exploited in the Wild

Brief

Attackers are actively exploiting a maximum severity SAP Commerce Cloud vulnerability, tracked as CVE-2026-58231, just days after SAP released a patch.

A critical SAP Commerce Cloud vulnerability, tracked as CVE-2026-58231 (CVSS score of 10. 0), is under active exploitation just days after SAP released a patch. The flaw stems from insufficient authorization checks and input validation.

“SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain functions lacking sufficient validation.” reads the advisory. “Successful exploitation could enable arbitrary code execution and compromise internal components, resulting in high impact on confidentiality, integrity, and availability of the application.”

Read more on Security Affairs