VendorsHcltechswhcl_launchany version
Vulnerabilities

Hcltechsw HCL SOFTWARE HCL Launch any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

26CVEs
CVE-2025-0272
HCL DevOps Deploy / HCL Launch is susceptible to an HTML injection vulnerability
Published 2025-04-03 · Analyzed
7.6EPSS 0.003
CVE-2023-45703
HCL Launch is susceptible to a Denial of Service vulnerability
Published 2023-12-20 · Modified
7.5EPSS 0.005
CVE-2025-0257
HCL DevOps Deploy / HCL Launch is susceptible to unauthorized access to other services
Published 2025-04-02 · Analyzed
7.5EPSS 0.003
CVE-2025-0255
HCL DevOps Deploy / HCL Launch is susceptible to command injection vulnerability
Published 2025-03-24 · Analyzed
7.2EPSS 0.007
CVE-2024-42195
HCL DevOps Deploy / HCL Launch is vulnerable to HTML injection
Published 2024-12-05 · Analyzed
6.8EPSS 0.003
CVE-2022-27551
HCL Launch could allow an authenticated user to obtain sensitive information (CVE-2022-27551)
Published 2022-08-03 · Modified
6.5EPSS 0.005
CVE-2023-45701
HCL Launch is susceptible to sensitive information disclosure
Published 2023-12-28 · Modified
6.5EPSS 0.005
CVE-2026-56460
HCL DevOps Deploy / HCL Launch is susceptible to an Insertion of Sensitive Information Into Sent Data vulnerability
Published 2026-07-09 · Analyzed
6.5EPSS 0.004
CVE-2025-0256
HCL DevOps Deploy / HCL Launch is susceptible to a sensitive information disclosure
Published 2025-03-24 · Analyzed
6.5EPSS 0.003
CVE-2024-23558
HCL DevOps Deploy / HCL Launch does not invalidate all session authentication cookies after logout
Published 2024-04-15 · Analyzed
6.3EPSS 0.003
CVE-2024-23550
HCL DevOps Deploy / HCL Launch (UCD) may be vulnerable to sensitive information disclosure
Published 2024-02-03 · Modified
6.2EPSS 0.002
CVE-2023-45702
HCL Launch Agent as a Windows service is vulnerable to a Denial of Service
Published 2023-12-28 · Modified
6.2EPSS 0.002
CVE-2024-42196
HCL Launch is susceptible to Insertion of Sensitive Information into Log File vulnerability
Published 2024-12-06 · Analyzed
6.2EPSS 0.002
CVE-2026-56459
HCL DevOps Deploy / HCL Launch is susceptible to sensitive information disclosure
Published 2026-07-09 · Analyzed
6.2EPSS 0.001
CVE-2024-23559
HCL DevOps Deploy / Launch is generating an obsolete HTTP header
Published 2024-04-15 · Analyzed
6.1EPSS 0.003
CVE-2025-59849
HCL BigFix Remote Control is vulnerable to an insecure CSP configuration
Published 2025-12-17 · Analyzed
6.1EPSS 0.002
CVE-2025-62329
HCL DevOps Deploy / HCL Launch is susceptible to an insufficient session expiration vulnerability
Published 2025-12-16 · Analyzed
5.6EPSS 0.002
CVE-2023-23348
HCL Launch is vulnerable to sensitive information disclosure
Published 2023-07-10 · Modified
5.5EPSS 0.002
CVE-2025-0273
HCL DevOps Deploy / HCL Launch is susceptible to Insertion of Sensitive Information into Log File vulnerability
Published 2025-03-27 · Analyzed
5.5EPSS 0.002
CVE-2022-42452
HCL Launch is vulnerable to HTML injection.  HTML code is stored and included without being sanitized. This can lead to further attacks such as XSS and Open Redirections.
Published 2023-03-30 · Modified
5.4EPSS 0.003
CVE-2023-45700
HCL Launch is susceptible to an HTML injection vulnerability
Published 2023-12-21 · Modified
5.4EPSS 0.003
CVE-2022-42445
HCL Launch is vulnerable to Insufficiently Protected LDAP Search Credentials (CVE-2022-42445)
Published 2022-11-28 · Modified
4.9EPSS 0.006
CVE-2024-23560
HCL DevOps Deploy / HCL Launch could be vulnerable to incomplete revocation of permissions when deleting a custom type
Published 2024-04-15 · Analyzed
4.9EPSS 0.003
CVE-2025-55254
HCL BigFix Remote Control is vulnerable to a Path-relative stylesheet import (PRSSI)
Published 2025-12-17 · Analyzed
4.8EPSS 0.002
CVE-2024-23561
HCL DevOps Deploy / HCL Launch is vulnerable to sensitive information disclosure vulnerability
Published 2024-04-15 · Analyzed
4.3EPSS 0.004
CVE-2026-56457
HCL DevOps Deploy / HCL Launch is susceptible to an exposure of sensitive information
Published 2026-06-29 · Analyzed
4.3EPSS 0.003