radar.cysentrix
4 reports · 4 sources · tracked since 4d ago EPSS <1%

SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code

AI synthesis SAP patched CVE-2026-58231, a CVSS 10.0 improper authorization flaw in Commerce Cloud's Data Hub Adapter allowing unauthenticated remote code execution; Defused reports active exploitation within three days of the fix.

vulnerabilitycloudzero day CVE-2026-58231
Why this ranks Transparent score: 24
coverage +12 source breadth +8 urgency +0 freshness +4

What changed

Coverage timeline

Every report remains linked to its original publisher.

  1. SOCRadar Coverage expanded

    SAP Commerce Cloud CVE-2026-58231 Requires Urgent Patching ↗

    SAP Commerce Cloud CVE-2026-58231 Requires Urgent Patching SAP has addressed CVE-2026-58231, a maximum-severity improper authorization vulnerability in the Data Hub Adapter for SAP Commerce Cloud. The flaw carries a CVSS

  2. Security Affairs Coverage expanded

    SAP Commerce Cloud CVE-2026-58231 Exploited in the Wild ↗

    Attackers are actively exploiting a maximum severity SAP Commerce Cloud vulnerability, tracked as CVE-2026-58231, just days after SAP released a patch. A critical SAP Commerce Cloud vulnerability, tracked as CVE-2026-58231 (CVSS score of 10.0), is under active exploitation jus...