Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 02 Mar 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hyland alfresco Transform Core
Hyland alfresco Transform Service |
|
| CPEs | cpe:2.3:a:hyland:alfresco_transform_core:*:*:*:*:*:*:*:* cpe:2.3:a:hyland:alfresco_transform_core:5.3.0:alpha1:*:*:*:*:*:* cpe:2.3:a:hyland:alfresco_transform_service:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Hyland alfresco Transform Core
Hyland alfresco Transform Service |
Fri, 20 Feb 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 20 Feb 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 20 Feb 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hyland
Hyland alfresco Community Hyland alfresco Transformation Service |
|
| Vendors & Products |
Hyland
Hyland alfresco Community Hyland alfresco Transformation Service |
Thu, 19 Feb 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve both arbitrary file read and server-side request forgery through the absolute path traversal. | |
| Title | Hyland Alfresco Transformation Service Absolute Path Traversal Arbitrary File Read and SSRF | |
| Weaknesses | CWE-36 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-02-20T19:08:14.840Z
Reserved: 2026-02-13T17:28:43.053Z
Link: CVE-2026-26337
Updated: 2026-02-20T19:08:03.544Z
Status : Analyzed
Published: 2026-02-19T18:24:59.730
Modified: 2026-03-02T22:03:57.953
Link: CVE-2026-26337
No data.
OpenCVE Enrichment
Updated: 2026-04-17T18:15:26Z