CVE-2026-58235: Use of Vulnerable Third-Party Component in SAP NetWeaver AS Java (Adobe Document Services)

Published Aug 11, 2026
·
Updated

SAP NetWeaver Application Server Java (Adobe Document Service) uses outdated open source cryptographic and data transfer libraries that contain known vulnerabilities addressed in later versions. A low-privileged authenticated attacker could potentially leverage these weaknesses against the affected component, though no specific exploit is currently known. Successful exploitation could result in low impact on confidentiality, integrity, and availability of the system.

Affected Software

1 affected component
SAP Sap Netweaver Application Server Java

Event History

Aug 11, 2026
CVE Published
via MITRE·12:12 AM
Data Sourced
via MITRE·12:12 AM
DescriptionSeverity
Data Sourced
via NVD·01:17 AM
DescriptionSeverity

Frequently Asked Questions

1

What is the severity of CVE-2026-58235?

The severity of CVE-2026-58235 is medium with a CVSS score of 6.3.

2

How do I fix CVE-2026-58235?

To fix CVE-2026-58235, update to the latest version of SAP NetWeaver AS Java that no longer uses the vulnerable libraries.

3

What types of attacks can CVE-2026-58235 enable?

CVE-2026-58235 could allow a low-privileged authenticated attacker to exploit weaknesses in the outdated libraries.

4

What components are affected by CVE-2026-58235?

CVE-2026-58235 affects the Adobe Document Services within SAP NetWeaver Application Server Java.

5

When was CVE-2026-58235 published?

CVE-2026-58235 was published on August 11, 2026.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203