Commerce Cloud
Coverage of Commerce Cloud in the Nexus archive.
- SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
SAP has released patches addressing a maximum-severity security flaw impacting Commerce Cloud (Data Hub Adapter). This vulnerability, designated CVE-2026-58231 and rated 10.0 on the CVSS scoring system, allows unauthenticated attackers to execute arbitrary code through insufficient authorization checks and input validation.
- SAP warns of critical flaws in NetWeaver and Commerce Cloud
SAP has addressed 16 vulnerabilities across multiple products in its July 2026 security updates, including three critical flaws in NetWeaver, Commerce Cloud, and AppRouter.
- SAP fixes critical vulnerabilities in Commerce Cloud and S/4HANA
SAP released May 2026 security updates addressing 15 vulnerabilities across multiple products, including critical flaws in Commerce Cloud and S/4HANA. The updates fix two critical vulnerabilities in these platforms. This move aims to secure SAP's enterprise-grade e-commerce platform and ERP suite.