Security Advisories
This page provides an overview of security vulnerabilities identified in our products, including their internal REL identifier and associated CVE identifiers (if present) and detailed disclosure information. We follow a coordinated vulnerability disclosure process → and publish full advisory details once patches are available and the disclosure window has expired. Our goal is to ensure transparency, support secure deployments, and help customers stay protected by keeping their systems up to date.
Relution is implementing a coordinated vulnerability disclosure process → starting 2026, and subsequent advisories created in the scope of that process will be published here.
RVD-2026-1: Permission Issue in Relution Server [REL-13078]
| Field | Value |
|---|---|
| Identifier | RVD-2026-1 |
| CVE | not assigned |
| Affected component | Relution Server |
| Affected versions | 5.32 - 26.4.1 |
| Fixed in | 26.4.2 |
| Published | August 13, 2026 |
| Status | Update available |
Relution Server 26.4.2 fixes a permission issue that may affect authenticated users.
We recommend that all customers with on-premises installations update to version 26.4.2 or later promptly.
All cloud instances operated by Relution have already been updated; no action is required for cloud customers.
Further technical details will be published here once the update has been widely rolled out.