HCL DevOps Plan是印度HCL公司的一款企业级应用与持续集成相关软件。 HCL DevOps Plan 3.0.05之前版本存在跨站脚本漏洞,该漏洞源于可能容易受到跨站脚本攻击,如果存在某些浏览器弱点,攻击者可能利用此漏洞。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| HCLSoftware | DevOps Plan | <3.0.05 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| HCLSoftware | DevOps Plan | <3.0.05 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-56587 | 3.7 LOW | HCL IEM was affected with Strict transport security not enforced |
| CVE-2026-56584 | 3.7 LOW | HCL IEM was affected with the Information disclosure nginx server |
| CVE-2026-56586 | 3.1 LOW | HCL IEM was affected with X-Content-Type-Options Header Missing |
| CVE-2026-56585 | 3.1 LOW | HCL IEM was affected with the Anti Clickjacking XFrame Options Header Missing |
| CVE-2026-56577 | 3.1 LOW | HCL MyCloud affected by Weak Password Policy |
| CVE-2026-56579 | 3.1 LOW | HCL MyCloud was affected with Exposure of Sensitive Information to an Unauthorized Actor. |
| CVE-2026-56583 | 3.1 LOW | HCL MyCloud was affected with Concurrent Login Vulnerability. |
| CVE-2026-56582 | 3.1 LOW | HCL MyCloud was affected with SSL/TLS Protocol Affected with LUCKY13 Vulnerability. |
| CVE-2026-56581 | 2.6 LOW | HCL MyCloud was affected with Cookie Attribute Path Not Set |
| CVE-2026-56578 | 2.2 LOW | HCL MyCloud was affected by Server Version Disclosure |
| CVE-2026-56580 | 2.2 LOW | HCL MyCloud was affected by Using Components with Known Vulnerability |
| CVE-2023-37507 | An information disclosure vulnerability affects HCL DevOps Plan |
No comments yet