CVE-2026-58231
SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain functions lacking sufficient validation. Successful exploitation could enable arbitrary code execution and compromise internal components, resulting in high impact on confidentiality, integrity, and availability of the application.
Early warning: exploitation observed
- Exploitation observed since Aug 14, 2026
- Not yet in the official CISA catalogue
- First attack observed 3 days after disclosure
Source: VulnCheck KEV · Sep 3, 2026 Aug 15, 2026 Aug 14, 2026 Aug 14, 2026
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HRelated articles
VulnerabilitiesSAP Commerce Cloud CVE-2026-58231 Already Under Attack: Maximum Risk for Exposed Installations
CVE-2026-58231, a critical SAP Commerce Cloud flaw, is already being targeted in exploitation attempts. Defused, a threat intelligence company, reported
APTPATCHCORD: The Campaign Hiding a Backdoor in Browsers and Using Google Sheets as C2
Discover PATCHCORD cyberespionage campaign: backdoors in browsers, Google Sheets C2, targeting telecoms. Fake tools and AI-assisted code development.
This product uses the NVD API but is not endorsed or certified by the NVD.