HCL DevOps Loop is affected by a Cross-Origin Resource Sharing (CORS) misconfiguration. Improper CORS configuration may allow unauthorized cross-origin requests, potentially exposing application resources to untrusted domains.
References
| Link | Resource |
|---|---|
| https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0132296 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-07-17 17:17
Updated : 2026-08-13 13:02
NVD link : CVE-2026-21761
Mitre link : CVE-2026-21761
CVE.ORG link : CVE-2026-21761
JSON object : View
Products Affected
hcltech
- devops_loop
CWE
CWE-942
Permissive Cross-domain Security Policy with Untrusted Domains
