Vulnerabilities
Vulnerable Software
Hcltech:  >> Devops Plan  >> 3.0.1  Security Vulnerabilities
HCL DevOps Plan is susceptible to an information disclosure that can allow an attacker to focus their attacks based upon the information revealed.
CVSS Score
6.9
EPSS Score
0.002
Published
2026-07-21
HCL DevOps Plan is potentially susceptible to Cross-Site Scripting (XSS) which could allow an attacker to exploit this vulnerability if certain browser weaknesses are present.
CVSS Score
2.3
EPSS Score
0.001
Published
2026-07-21
IBM DevOps Plan 3.0.0 through 3.0.6 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking
CVSS Score
6.5
EPSS Score
0.001
Published
2026-06-11
IBM DevOps Plan 3.0.0 through 3.0.5 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.
CVSS Score
5.9
EPSS Score
0.002
Published
2026-03-03
IBM DevOps Plan 3.0.0 through 3.0.5 allows web page cache to be stored locally which can be read by another user on the system.
CVSS Score
6.2
EPSS Score
0.001
Published
2026-03-03


Contact Us

Shodan ® - All rights reserved