SAP'S August 2026 Patch Day, released on August 11, includes 28 security notes, with the critical flaw CVE-2026-58231 scoring a CVSS 10.0, highlighting improper authorization in SAP Commerce Cloud. Other significant vulnerabilities include remote code execution and code injection issues affecting multiple SAP products, with no confirmed exploitation reported.
Organizations are urged to promptly apply the security updates, prioritizing those with higher CVSS scores to mitigate risks associated with core functionalities like finance and supply chain management.