← Back

Hcl Digital Experience

hcl_digital_experience

Vendor: Hcltech • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Hcltech
1Hcl Digital Experience
Jun 17, 2026
Dec 19, 2022
N/A· v4
6.1 MEDIUM· v3
N/A· v2
 In HCL Digital Experience, URLs can be constructed to redirect users to untrusted sites.
1Hcltech
1Hcl Digital Experience
Jun 17, 2026
Sep 22, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
User input included in error response, which could be used in a phishing attack.
1Hcltech
1Hcl Digital Experience
Jun 17, 2026
Nov 5, 2020
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
HCL Digital Experience 8.5, 9.0, 9.5 is susceptible to cross site scripting (XSS). One subcomponent is vulnerable to reflected XSS. In reflected XSS, an attacker must induce a victim to click on a crafted URL from some d...Show more
HCL Digital Experience 8.5, 9.0, 9.5 is susceptible to cross site scripting (XSS). One subcomponent is vulnerable to reflected XSS. In reflected XSS, an attacker must induce a victim to click on a crafted URL from some delivery mechanism (email, other web site).Show less
1Hcltech
1Hcl Digital Experience
Jun 17, 2026
Jun 11, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
"HCL Digital Experience is susceptible to Server Side Request Forgery."