CVE-2026-58231

SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain functions lacking sufficient validation. Successful exploitation could enable arbitrary code execution and compromise internal components, resulting in high impact on confidentiality, integrity, and availability of the application.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-11 11:17

Updated : 2026-08-17 15:39


NVD link : CVE-2026-58231

Mitre link : CVE-2026-58231

CVE.ORG link : CVE-2026-58231


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')