SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-21760

MEDIUM · CVSS 4.6 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-17 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

HCL DevOps Loop is vulnerable to unauthorized access due to improper authorization checks, which may allow attackers to exploit forced browsing techniques to reach restricted administrative functionalities. This could lead to unauthorized manipulation of sensitive data or system configurations. Organizations using HCL DevOps Loop should prioritize addressing this vulnerability to safeguard their administrative interfaces from potential exploitation.

CVE
CVE-2026-21760
Severity
MEDIUM
CVSS
4.6
EPSS
0.15%

Original NVD Description

HCL DevOps Loop is affected by an Unauthorized Access to Admin Functionality (Forced Browsing) vulnerability. Improper authorization checks may allow unauthorized users to access restricted administrative functionality by directly accessing protected application endpoints.

Related CVEs

Other vulnerabilities affecting the same vendor(s)