AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-56619

MEDIUM · CVSS 5.4 EPSS 0.13%

Source: NVD + CISA KEV + EPSS · Published 2026-08-10 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

HCL BigFix Mobile is susceptible to reflected cross-site scripting (XSS) due to inadequate validation and output encoding of user-controlled input. This vulnerability could allow attackers to execute arbitrary scripts in the context of a user's session, potentially leading to data theft or session hijacking. Organizations using HCL BigFix Mobile should prioritize addressing this issue to mitigate risks associated with user data compromise.

CVE
CVE-2026-56619
Severity
MEDIUM
CVSS
5.4
EPSS
0.13%

Original NVD Description

HCL BigFix Mobile is vulnerable to Reflected Cross-Site Scripting (Reflected XSS) due to insufficient validation and output encoding of user-controlled input.