CVE-2026-26339

Szczegóły podatności CVE.
Aktualizacja: 04.03.2026, 01:54 (CET)
non-KEV CVSS 9.8 EPSS 0.0022 Score 29.53

Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve remote code execution through the argument injection vulnerability, which exists in the document processing functionality.

Źródła

ŹródłoLinkUwagi
NVD (NIST)https://nvd.nist.gov/vuln/detail/CVE-2026-26339Karta CVE w NVD
CISA KEVhttps://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-26339Wyszukiwanie CVE w KEV
FIRST EPSShttps://api.first.org/data/v1/epss?cve=CVE-2026-26339API EPSS dla CVE
disclosure@vulncheck.comhttps://connect.hyland.com/t5/alfresco-blog/security-update-cve-2026-26337-cve-2026-26338-cve-2026-26339/ba-p/496551Vendor Advisory
disclosure@vulncheck.comhttps://www.hyland.com/en/solutions/products/alfresco-platformProduct
disclosure@vulncheck.comhttps://www.vulncheck.com/advisories/hyland-alfresco-transformation-service-argument-injection-rceThird Party Advisory