SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-21753

MEDIUM · CVSS 4.2 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-08-25 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

HCL Hive is vulnerable due to inadequate software supply chain governance, potentially allowing the integration of unmaintained or malicious third-party dependencies. This weakness could lead to security breaches or exploitation of the application environment. Organizations using HCL Hive should prioritize addressing this vulnerability to mitigate risks associated with third-party components.

CVE
CVE-2026-21753
Severity
MEDIUM
CVSS
4.2
EPSS
0.14%

Original NVD Description

HCL Hive is affected by weak software supply chain governance, which could lead to the inclusion of vulnerable, unmaintained, or malicious third-party dependencies within the application environment.