← Back to Feed
Max severity SAP Commerce Cloud flaw now targeted in attacks
August 14, 2026 · BleepingComputer · Severity: HIGH
A maximum-severity remote code execution vulnerability in SAP Commerce Cloud, patched only three days ago, is already being actively exploited in attacks. Threat intelligence firm Defused has observed the flaw being targeted, highlighting the rapid weaponization of newly disclosed vulnerabilities. Organizations running SAP Commerce Cloud should apply the patch immediately to prevent compromise.
Key Takeaways
- Attackers quickly exploit critical SAP vulnerability after patch release.
- Defused reports active exploitation of maximum-severity RCE flaw.
- Organizations must urgently patch SAP Commerce Cloud systems.