Product
hyland alfresco transform core
3 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-26339
CVE-2026-26338
CVE-2026-26337
< 5.2.4
Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve remote code execution through the argument inje
< 5.3.0
Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve server-side request forgery (SSRF) through the
< 5.3.0
Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve both arbitrary file read and server-side reques