PT-2025-14767 · Hcl · Hcl Launch+1
Published
2025-04-03
·
Updated
2025-04-03
·
CVE-2025-0272
CVSS v3.1
7.6
High
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
HCL DevOps Deploy / HCL Launch (affected versions not specified)
Description
The issue allows a user to embed arbitrary HTML tags in the Web UI, potentially leading to sensitive information disclosure. This is due to an HTML injection vulnerability.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Hcl Devops Deploy
Hcl Launch