PatchSiren

Hyland CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Hyland CVE published 2026-07-01

CVE-2026-58127

PACSgear MediaWriter 5.2.1 is vulnerable to unauthenticated remote code execution via a .NET Remoting TCP service on port 9000. The service, registered with ObjectURIs RemoteObj and UIRemoteObj, lacks authentication. An attacker can exploit this using the MarshalByRefObject object unmarshalling technique and .NET WebClient class methods to read and write arbitrary files. Chaining this with DLL hijacking i [truncated]

CRITICAL Hyland CVE published 2026-07-01

CVE-2026-58126

CVE-2026-58126 is a critical vulnerability in PACSgear PACS Scan 5.2.1, allowing unauthenticated remote code execution. The vulnerability is caused by an exposed .NET Remoting TCP service on port 22222, which can be exploited to read and write arbitrary files. This can be chained with DLL hijacking to achieve remote code execution as NT Authority SYSTEM. The vulnerability has a CVSS score of 9.3 and is co [truncated]

CRITICAL Hyland CVE published 2026-02-19

CVE-2026-26339

CVE-2026-26339 is a critical vulnerability in Hyland Alfresco Transformation Service, allowing unauthenticated remote code execution via argument injection in the document processing functionality. The vulnerability has a CVSS score of 9.3 and is considered CRITICAL. Organizations should prioritize patching to prevent potential remote code execution attacks. The vulnerability exists due to insufficient in [truncated]

MEDIUM Hyland CVE published 2026-02-19

CVE-2026-26338

CVE-2026-26338 is a server-side request forgery (SSRF) vulnerability in Hyland Alfresco Transformation Service. The vulnerability allows unauthenticated attackers to achieve SSRF through the document processing functionality. The CVSS score is 6.9, and the severity is MEDIUM. Affected organizations should review and apply vendor patches or updates if available. Compensating controls such as network access [truncated]