Vulnerabilities
Vulnerable Software
Hcltech:  Security Vulnerabilities
Missing "no cache" headers in HCL Leap permits sensitive data to be cached.
CVSS Score
3.2
EPSS Score
0.0
Published
2025-04-30
Unsafe default file type filter policy in HCL Domino Volt allows upload of .html file and execution of unsafe JavaScript in deployed applications
CVSS Score
4.6
EPSS Score
0.0
Published
2025-04-30
Unsafe default file type filter policy in HCL Domino Volt allows upload of .html file and execution of unsafe JavaScript in deployed applications.
CVSS Score
4.6
EPSS Score
0.0
Published
2025-04-30
HCL SX v21 is affected by usage of a weak cryptographic algorithm. An attacker could exploit this weakness to gain access to sensitive information, modify data, or other impacts.
CVSS Score
6.5
EPSS Score
0.0
Published
2025-04-25
Missing "no cache" headers in HCL Leap permits user directory information to be cached.
CVSS Score
3.2
EPSS Score
0.0
Published
2025-04-24
Missing "no cache" headers in HCL Leap permits sensitive data to be cached.
CVSS Score
3.2
EPSS Score
0.0
Published
2025-04-24
Improper sanitization of SVG files in HCL Leap allows client-side script injection in deployed applications.
CVSS Score
4.6
EPSS Score
0.0
Published
2025-04-24
Unsafe default file type filter policy in HCL Leap allows execution of unsafe JavaScript in deployed applications.
CVSS Score
4.6
EPSS Score
0.0
Published
2025-04-24
Insufficient sanitization in HCL Leap allows client-side script injection in the authoring environment.
CVSS Score
3.7
EPSS Score
0.0
Published
2025-04-24
Multiple vectors in HCL Leap allow client-side script injection in the authoring environment and deployed applications.
CVSS Score
6.5
EPSS Score
0.0
Published
2025-04-24


Contact Us

Shodan ® - All rights reserved