CVE-2026-26338: Hyland Alfresco Transformation Service SSRF
Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve server-side request forgery (SSRF) through the document processing functionality.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-26338?
CVE-2026-26338 has been classified as a high severity vulnerability due to its potential for exploitation by unauthenticated attackers.
How do I fix CVE-2026-26338?
To fix CVE-2026-26338, upgrade to the latest version of the Hyland Alfresco Transformation Service that addresses this SSRF vulnerability.
What impact does CVE-2026-26338 have on my system?
CVE-2026-26338 allows unauthorized attackers to send requests from the server to internal resources, potentially leading to data exposure.
Is my version of Hyland Alfresco Transformation Service affected by CVE-2026-26338?
If you are using Hyland Alfresco Transformation Service prior to the latest security updates, your system may be vulnerable to CVE-2026-26338.
How can I determine if I have been exploited through CVE-2026-26338?
To determine if your system has been exploited via CVE-2026-26338, check your logs for unusual outbound requests or unauthorized access attempts.