CVE-2024-29309: Alfresco Content Services

High severity, CVSS 7.7. EPSS: 0.7% chance of exploitation in the next 30 days.

An issue in Alfresco Content Services v.23.3.0.7 allows a remote attacker to execute arbitrary code via the Transfer Service.

Affected products

  • Alfresco Alfresco Content Services: version 23.3.0.7 only

Published 2024-05-02. Last modified 2026-06-17.