Browse all 86 CVE security advisories affecting HCLSoftware. AI-powered Chinese analysis, POCs, and references for each vulnerability.
HCLSoftware develops enterprise software solutions including application development, integration, and digital experience platforms. Historically, their products have been vulnerable to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from improper input validation and access control flaws. With 19 CVEs currently on record, security researchers have identified consistent patterns in their codebase. While no major public security incidents have been widely documented, the volume of disclosed vulnerabilities suggests ongoing challenges in secure coding practices. Organizations implementing HCLSoftware solutions should prioritize regular patching and hardening of these environments to mitigate potential exploitation risks.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-68825 | HCL Hive is affected by incorrect default permissions — HCL Hive CWE-276 | 7.5 | High | 2026-08-24 |
| CVE-2026-21752 | HCL Hive is affected by a use of vulnerable third-party components — HCL Hive CWE-1104 | 7.5 | High | 2026-08-24 |
| CVE-2026-21755 | HCL Hive is affected by a missing rate limit — HCL Hive CWE-307 | 5.3 | Medium | 2026-08-24 |
| CVE-2025-68833 | HCL Hive is affected by use of a cryptographic primitive with a risky implementation — HCL Hive CWE-1240 | 5.3 | Medium | 2026-08-24 |
| CVE-2026-21751 | HCL Hive is affected by use of a cryptographic primitive with a risky implementation — HCL Hive CWE-1240 | 7.4 | High | 2026-08-24 |
| CVE-2026-21756 | HCL Hive is affected by a broken access control vulnerability — HCL Hive CWE-266 | 7.2 | High | 2026-08-24 |
| CVE-2026-21759 | HCL Hive is affected by an information exposure vulnerability — HCL Hive CWE-215 | 4.3 | Medium | 2026-08-24 |
This page lists every published CVE security advisory associated with HCLSoftware. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.