CVE-2026-26339

Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve remote code execution through the argument injection vulnerability, which exists in the document processing functionality.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hyland:alfresco_transform_service:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:hyland:alfresco_transform_core:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-02-19 18:25

Updated : 2026-07-14 19:16


NVD link : CVE-2026-26339

Mitre link : CVE-2026-26339

CVE.ORG link : CVE-2026-26339


JSON object : View

Products Affected

hyland

  • alfresco_transform_core
  • alfresco_transform_service
CWE
CWE-918

Server-Side Request Forgery (SSRF)