PT-2026-46905 · Hclsoftware · Digital Experience & Dx Compose

Published

2026-06-05

·

Updated

2026-06-05

·

CVE-2026-21826

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
HCL Digital Experience and HCL Digital Experience Compose could be susceptible to Host header injection.  An attacker can manipulate the Host header and cause the application to behave in unexpected ways.

Fix

Open Redirect

Weakness Enumeration

Related Identifiers

CVE-2026-21826

Affected Products

Digital Experience & Dx Compose