<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Any info about CVE-2020-11022, CVE-2021-23450 &amp;amp; CVE-2021-41182 with ACS 23.1 in Alfresco Forum</title>
    <link>https://connect.hyland.com/t5/alfresco-forum/any-info-about-cve-2020-11022-cve-2021-23450-amp-cve-2021-41182/m-p/493791#M40488</link>
    <description>&lt;P&gt;Thank you for the information! So I guess we can assume that if a library version used in Alfresco has an old vulnerability finding (like in this case), the vulnerability is not exploitable in Alfresco. Otherwise it would have been updated.&lt;/P&gt;</description>
    <pubDate>Fri, 10 Oct 2025 11:49:57 GMT</pubDate>
    <dc:creator>klabecks</dc:creator>
    <dc:date>2025-10-10T11:49:57Z</dc:date>
    <item>
      <title>Any info about CVE-2020-11022, CVE-2021-23450 &amp; CVE-2021-41182 with ACS 23.1</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/any-info-about-cve-2020-11022-cve-2021-23450-amp-cve-2021-41182/m-p/493595#M40468</link>
      <description>&lt;P&gt;I want to know if any of the following vulnerabilities can be exploited with Alfresco?&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cve.org/CVERecord?id=CVE-2020-11022" target="_blank" rel="noopener"&gt;https://www.cve.org/CVERecord?id=CVE-2020-11022&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://www.cve.org/CVERecord?id=CVE-2021-23450" target="_blank" rel="noopener"&gt;https://www.cve.org/CVERecord?id=CVE-2021-23450&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://www.cve.org/CVERecord?id=CVE-2021-41182" target="_blank" rel="noopener"&gt;https://www.cve.org/CVERecord?id=CVE-2021-41182&lt;/A&gt;&lt;/P&gt;&lt;P&gt;These were found in Alfresco Community 23.1 version.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Oct 2025 11:12:39 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/any-info-about-cve-2020-11022-cve-2021-23450-amp-cve-2021-41182/m-p/493595#M40468</guid>
      <dc:creator>klabecks</dc:creator>
      <dc:date>2025-10-03T11:12:39Z</dc:date>
    </item>
    <item>
      <title>Re: Any info about CVE-2020-11022, CVE-2021-23450 &amp; CVE-2021-41182 with ACS 23.1</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/any-info-about-cve-2020-11022-cve-2021-23450-amp-cve-2021-41182/m-p/493701#M40475</link>
      <description>&lt;P&gt;We keep an eye on the CVEs and scan Alfresco with the usual tools. Not every security issue in a library we use can be exploited.&amp;nbsp;You can find our security policy at&amp;nbsp;&lt;A href="https://docs.alfresco.com/support/latest/policies/security/" target="_blank"&gt;https://docs.alfresco.com/support/latest/policies/security/&lt;/A&gt;&amp;nbsp;.&lt;/P&gt;
&lt;P&gt;As a rule, we do not communicate about individual CVEs. The latest service pack is always up-to-date with our security fixes, my recommendation is to deploy 23.5 or wait just a week to go to 23.6.&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 12:33:55 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/any-info-about-cve-2020-11022-cve-2021-23450-amp-cve-2021-41182/m-p/493701#M40475</guid>
      <dc:creator>HeinRagas</dc:creator>
      <dc:date>2025-10-07T12:33:55Z</dc:date>
    </item>
    <item>
      <title>Re: Any info about CVE-2020-11022, CVE-2021-23450 &amp; CVE-2021-41182 with ACS 23.1</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/any-info-about-cve-2020-11022-cve-2021-23450-amp-cve-2021-41182/m-p/493791#M40488</link>
      <description>&lt;P&gt;Thank you for the information! So I guess we can assume that if a library version used in Alfresco has an old vulnerability finding (like in this case), the vulnerability is not exploitable in Alfresco. Otherwise it would have been updated.&lt;/P&gt;</description>
      <pubDate>Fri, 10 Oct 2025 11:49:57 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/any-info-about-cve-2020-11022-cve-2021-23450-amp-cve-2021-41182/m-p/493791#M40488</guid>
      <dc:creator>klabecks</dc:creator>
      <dc:date>2025-10-10T11:49:57Z</dc:date>
    </item>
  </channel>
</rss>

