CVE-2026-56460
EUVD-2026-4255509.07.2026, 10:16
HCL DevOps Deploy / HCL Launch could disclose sensitive configurations and secrets to authenticated users in API responses that could be used in further attacks against the system.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hcltechsw | hcl_devops_deploy | 8.0.0.0 ≤ 𝑥 < 8.0.1.14 |
| hcltechsw | hcl_devops_deploy | 8.1.0.0 ≤ 𝑥 < 8.1.2.7 |
| hcltechsw | hcl_devops_deploy | 8.2.0.0 ≤ 𝑥 < 8.2.2.0 |
| hcltechsw | hcl_launch | 7.3.0.0 ≤ 𝑥 < 7.3.2.19 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration