PT-2025-14767 · Hcl · Hcl Launch+1

Published

2025-04-03

·

Updated

2025-04-03

·

CVE-2025-0272

CVSS v3.1

7.6

High

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions HCL DevOps Deploy / HCL Launch (affected versions not specified)
Description The issue allows a user to embed arbitrary HTML tags in the Web UI, potentially leading to sensitive information disclosure. This is due to an HTML injection vulnerability.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-0272

Affected Products

Hcl Devops Deploy
Hcl Launch