CVE-2023-37538
11.10.2023, 13:15
HCL Digital Experience is susceptible to cross site scripting (XSS). One subcomponent is vulnerable to reflected XSS. In reflected XSS, an attacker must induce a victim to click on a crafted URL from some delivery mechanism (email, other web site).
Vendor | Product | Version |
---|---|---|
hcltech | digital_experience | 8.5 |
hcltech | digital_experience | 9.0 |
hcltech | digital_experience | 9.5 |
𝑥
= Vulnerable software versions