HCL Nomad server on Domino did not configure certain HTTP Security headers by default which could allow an attacker to obtain sensitive information via unspecified vectors.
2024-10-01T12:15:03.687
2025-10-30T18:15:31.587
Analyzed
CVSSv3.1: 3.7 (LOW)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | hcltech | nomad_server_on_domino | < 1.0.13 | Yes |