SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-21761

MEDIUM · CVSS 4.2 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-17 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

HCL DevOps Loop is vulnerable due to a misconfiguration in its Cross-Origin Resource Sharing (CORS) settings, which could permit unauthorized cross-origin requests. This flaw may lead to the exposure of sensitive application resources to untrusted domains, posing a risk to data integrity and confidentiality. Organizations using HCL DevOps Loop should prioritize addressing this vulnerability to mitigate potential security breaches.

CVE
CVE-2026-21761
Severity
MEDIUM
CVSS
4.2
EPSS
0.15%

Original NVD Description

HCL DevOps Loop is affected by a Cross-Origin Resource Sharing (CORS) misconfiguration. Improper CORS configuration may allow unauthorized cross-origin requests, potentially exposing application resources to untrusted domains.

Related CVEs

Other vulnerabilities affecting the same vendor(s)