CVE-2026-21760

HCL DevOps Loop is affected by an Unauthorized Access to Admin Functionality (Forced Browsing) vulnerability. Improper authorization checks may allow unauthorized users to access restricted administrative functionality by directly accessing protected application endpoints.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hcltech:devops_loop:2.0.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-07-17 17:17

Updated : 2026-08-13 13:10


NVD link : CVE-2026-21760

Mitre link : CVE-2026-21760

CVE.ORG link : CVE-2026-21760


JSON object : View

Products Affected

hcltech

  • devops_loop
CWE
CWE-425

Direct Request ('Forced Browsing')