SAP released August 2026 security updates fixing several critical flaws that could let attackers break into business systems, run commands, or crash servers. The most severe is CVE-2026-58231 in SAP Commerce Cloud Data Hub Adapter, a 10.0 improper-authorization bug that can allow authentication bypass and likely remote code execution. SAP also fixed code-injection flaws CVE-2026-44772 and CVE-2026-44758 in Manufacturing Integration and Intelligence, plus memory-corruption flaw CVE-2026-34265 in Application Server ABAP for NetWeaver and ABAP Platform.
Why it matters: Organizations running affected SAP products should treat this as a high-priority patch cycle because these systems often sit at the center of sales, manufacturing, and core business operations. Apply SAP’s August 2026 updates quickly and review exposed SAP services, especially internet-reachable Commerce and NetWeaver components.
Ionut Arghire
2026.08.11
100% relevant
This article is the first item here establishing SAP's August 2026 Security Patch Day as a trackable event centered on newly disclosed critical CVEs across multiple SAP enterprise products.
← Back to all stories