Description
An endpoint in HCL Connections is vulnerable to information disclosure. In certain scenarios this might lead to disclosing sensitive information to unauthorized users.
Severity (CVSS)
| Base score | 3.5 |
|---|---|
| Severity | Low |
| Version | CVSS 3.1 |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N |
| Provided by | CNA |
Weaknesses
- CWE-213 — CWE-213 Exposure of sensitive information due to incompatible policies
Affected products
| Vendor | Product | Versions |
|---|---|---|
| HCLSoftware | Connections | 8.0 |
References
Generated from the official CVE List on 28 Jul 2026 07:03 UTC.