As cited
Citation snapshot as of .
vulnerabilities
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
SAP has patched a maximum-severity vulnerability (CVE-2026-58231, CVSS 10.0) in Commerce Cloud Data Hub Adapter that stems from insufficient authorization checks and input validation. The flaw permits unauthenticated attackers to execute arbitrary code on affected systems.
Why it matters: Organizations running SAP Commerce Cloud Data Hub Adapter must apply patches immediately, as the CVSS 10.0 rating and unauthenticated attack vector pose direct risk to production environments.
- Source published
- First seen by Cybersecurity Tracker