All 5 CVE vulnerabilities found in DevOps Plan, with AI-generated Chinese analysis, references, and POCs.
Vendor: IBM
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2023-37507 | An information disclosure vulnerability affects HCL DevOps Plan CWE-497 | - | - | 2026-07-21 |
| CVE-2023-37508 | HCL DevOps Plan is susceptible to a Cross-Site Scripting (XSS) vulnerability CWE-79 | - | - | 2026-07-21 |
| CVE-2026-4096 | A vulnerability has been identified in IBM DevOps Plan that allows a Host Header Injection attack due to improper handling of the Host header in HTTP requests. CWE-644 | 6.5 | Medium | 2026-06-11 |
| CVE-2025-36363 | IBM DevOps Plan is vulnerable to Excessive Authentication Attempts CWE-307 | 5.9 | Medium | 2026-03-03 |
| CVE-2025-36364 | IBM DevOps Plan REST APIs are vulnerable to exposure of sensitive data through request query parameters. CWE-525 | 6.2 | Medium | 2026-03-03 |
All 5 known CVE vulnerabilities affecting DevOps Plan with full Chinese analysis, references, and POCs where available.