August 17, 2026
- SAP Commerce Cloud CVE-2026-58231 (CVSS 10) exploited three days after disclosure. Attacks landed despite a patch and with no prior public PoC, a fast turnaround on a maximum-severity bug (SecurityWeek) (earlier coverage). · Active Exploitation — Developing Threads
in One Video Call to Kernel: Unisoc Baseband Chain Gives Full Android Takeover