Vulnerability Database

323,735

Total vulnerabilities in the database

CVE-2026-26337

Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve both arbitrary file read and server-side request forgery through the absolute path traversal.

  • Published: Feb 19, 2026
  • Updated: Feb 20, 2026
  • CVE: CVE-2026-26337
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 8.2
  • AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

CWEs: