Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
SAP Addresses Critical Security Flaws in Latest Patch

SAP Addresses Critical Security Flaws in Latest Patch

Posted on August 11, 2026 By CWS

Enterprise software giant SAP has released a series of security updates addressing multiple critical vulnerabilities. These updates, announced on Tuesday, include 28 new security notes, two updates to existing notes, and an advisory on GitHub. These actions are part of SAP’s ongoing effort to enhance the security of its software offerings.

Critical Vulnerabilities Resolved

The August 2026 Security Patch Day saw SAP tackle several high-risk issues, including CVE-2026-58231, which received a perfect CVSS score of 10/10. This vulnerability in SAP Commerce Cloud’s Data Hub Adapter could allow unauthorized access through improper authorization, potentially leading to code execution and compromising the system’s confidentiality, integrity, and availability.

Additionally, SAP addressed two major code injection vulnerabilities within its Manufacturing Integration and Intelligence platform. These vulnerabilities, identified as CVE-2026-44772 and CVE-2026-44758, have been assigned CVSS scores of 9.9/10 and 9.1/10, respectively. These flaws could enable attackers to execute arbitrary commands, severely compromising the infrastructure.

Memory Corruption and Additional Risks

The fourth critical flaw, CVE-2026-34265, involves a memory corruption issue within the Application Server ABAP for NetWeaver and ABAP Platform. Rated at 9.8/10 on the CVSS scale, this vulnerability stems from logical errors in DIAG protocol parsing. It poses a threat to sensitive information security and system stability, as it can be exploited without authentication.

Prior to this patch release, SAP had updated a critical security note from July 2026, addressing a memory corruption issue in the NetWeaver Application Server ABAP. This update provided additional details and resolutions for the defect.

Focus on High-Severity Flaws

In addition to the critical patches, SAP released eight notes targeting high-severity vulnerabilities across various platforms, including ABAP Developer Tools, Commerce Cloud, and the Change and Transport System Attach Tool. Issues such as privilege escalation, buffer overflow, remote code execution, and credentials disclosure were addressed, further bolstering the security framework.

The seventh note specifically resolves 11 security issues within the Business AI Platform’s Approuter, highlighting SAP’s commitment to securing its enterprise solutions. Further notes were released for medium- and low-severity vulnerabilities, ensuring comprehensive coverage.

These security measures are crucial for maintaining the integrity of SAP’s software, though there is no current evidence of these vulnerabilities being exploited in the wild.

With these updates, SAP continues to prioritize cybersecurity, reinforcing its software against potential threats and enhancing user trust.

Security Week News Tags:Authentication, code injection, confidentiality, CVE, Cybersecurity, Enterprise, Integrity, memory corruption, Patch, SAP, Security, Software, Technology, Vulnerabilities

Post navigation

Previous Post: OpenAI Introduces GPT-5.6-Cyber for Advanced Cybersecurity
Next Post: Critical Flaws Found in Copeland’s Refrigeration Controllers

Related Posts

Palo Alto Networks Addresses Critical Firewall Vulnerability Palo Alto Networks Addresses Critical Firewall Vulnerability Security Week News
Cyber Espionage Group Targets 37 Nations’ Infrastructure Cyber Espionage Group Targets 37 Nations’ Infrastructure Security Week News
Trump Boosts Post-Quantum Cryptography Efforts with New Order Trump Boosts Post-Quantum Cryptography Efforts with New Order Security Week News
Webinar Explores Practical Use of CIS Controls Webinar Explores Practical Use of CIS Controls Security Week News
Webinar: Safeguarding Identity in AI and Automation Webinar: Safeguarding Identity in AI and Automation Security Week News
Defend Against Identity Threats: Join Our Webinar Defend Against Identity Threats: Join Our Webinar Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Mozilla Enhances Security After Signing Key Exposure
  • AI Governance: A Leadership Essential for Modern Businesses
  • Fake Crypto Firm Exposes North Korean IT Espionage
  • Critical Flaws Found in Copeland’s Refrigeration Controllers
  • SAP Addresses Critical Security Flaws in Latest Patch

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Mozilla Enhances Security After Signing Key Exposure
  • AI Governance: A Leadership Essential for Modern Businesses
  • Fake Crypto Firm Exposes North Korean IT Espionage
  • Critical Flaws Found in Copeland’s Refrigeration Controllers
  • SAP Addresses Critical Security Flaws in Latest Patch

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark