THREATOPS
THREAT OPSThreat News › SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code

SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code

medthehackernewsPublished 2026-08-12

SAP has released patches to address a maximum-severity security flaw impacting Commerce Cloud (Data Hub Adapter) that could result in arbitrary code execution.

The vulnerability, assigned the CVE identifier CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It has been described as a case of insufficient authorization checks and input validation.

"SAP Commerce Cloud allows an

Indicators of compromise

Original source: https://thehackernews.com/2026/08/sap-commerce-cloud-flaw-could-let.html