CVE-2026-54054 | transmute-app Transmute up to 1.2.x URL Import Endpoint /api/files/url server-side request forgery

SecurityVulns

A vulnerability was found in transmute-app Transmute up to 1.2.x and classified as problematic. Affected is an unknown function of the file /api/files/url of the component URL Import Endpoint. Executing a manipulation can lead to server-side request forgery.

This vulnerability is registered as CVE-2026-54054. It is possible to launch the attack remotely. No exploit is available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More