securityonline.info 8/11/2026, 2:52:08 PM · external

SAP patches critical CVE-2026-58231 in Commerce Cloud, 28 notes

SAP patches critical CVE-2026-58231 in Commerce Cloud, 28 notes
Developing story vulnerability 2 articles tracked
SAP patches critical CVE-2026-58231 in Commerce Cloud and NetWeaver
CyberSIXT Evidence Panel
Primary Source support.sap.com
CISA KEV Not in KEV
Patch Patch Status Unknown

SAP'S August 2026 Patch Day, released on August 11, includes 28 security notes, with the critical flaw CVE-2026-58231 scoring a CVSS 10.0, highlighting improper authorization in SAP Commerce Cloud. Other significant vulnerabilities include remote code execution and code injection issues affecting multiple SAP products, with no confirmed exploitation reported.

Organizations are urged to promptly apply the security updates, prioritizing those with higher CVSS scores to mitigate risks associated with core functionalities like finance and supply chain management.

View Primary Source Via securityonline.info

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline