Known Vulnerabilities for Hcl Compass by Hcltech
Listed below are 4 of the newest known vulnerabilities associated with "Hcl Compass" by "Hcltech".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-14881 json | When importing connections in Compass it is possible to override some connection options that are otherwise can't be changed ... | Not Provided | 2026-07-22 | 2026-07-23 |
| CVE-2023-37504 json | HCL Compass is vulnerable to failure to invalidate sessions. The application does not invalidate authenticated sessions when ... | 6.5 - MEDIUM | 2023-10-19 | 2023-10-25 |
| CVE-2023-37503 json | HCL Compass is vulnerable to insecure password requirements. An attacker could easily guess the password and gain access to u... | 9.8 - CRITICAL | 2023-10-19 | 2023-10-25 |
| CVE-2023-37502 json | HCL Compass is vulnerable to lack of file upload security. An attacker could upload files containing active code that can b... | 8.8 - HIGH | 2023-10-18 | 2023-10-25 |
| CVE-2022-42447 json | HCL Compass is vulnerable to Cross-Origin Resource Sharing (CORS). This vulnerability can allow an unprivileged remote attack... | 8.8 - HIGH | 2023-04-02 | 2023-11-07 |