HCL DevOps Deploy / HCL Launch could allow an authenticated user to obtain sensitive information about other users on the system due to missing authorization for a function.
2025-03-24T16:15:33.120
2025-04-11T17:38:18.477
Analyzed
CVSSv3.1: 4.3 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | hcltechsw | hcl_devops_deploy | < 8.0.1.5 | Yes |
| Application | hcltechsw | hcl_devops_deploy | 8.1.0 | Yes |
| Application | hcltechsw | hcl_launch | < 7.0.5.26 | Yes |
| Application | hcltechsw | hcl_launch | < 7.1.2.22 | Yes |
| Application | hcltechsw | hcl_launch | < 7.2.3.15 | Yes |
| Application | hcltechsw | hcl_launch | < 7.3.2.10 | Yes |