HCL
HCL Hive: vulnerabilidades y CVE
HCL Hive tiene 9 vulnerabilidades publicadas, 9 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses9
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-21758 | Baja (3.7) | 0.17% | — | 25 ago 2026 | HCL Hive is affected by an information disclosure vulnerability, which could lead to an attacker gathering sensitive information about the host environment. |
| CVE-2026-21754 | Media (5.4) | 0.14% | — | 25 ago 2026 | HCL Hive is affected by multiple infrastructure and network configuration vulnerabilities, which could lead to unauthorized lateral movement, container breakout, and sensitive data exposure within internal… |
| CVE-2026-21753 | Media (4.2) | 0.14% | — | 25 ago 2026 | HCL Hive is affected by weak software supply chain governance, which could lead to the inclusion of vulnerable, unmaintained, or malicious third-party dependencies within the application environment. |
| CVE-2026-21752 | Alta (7.5) | 0.27% | — | 24 ago 2026 | HCL Hive is affected by a use of vulnerable third-party components which could allow an attacker unauthorized access or compromise of the system by exploiting publicly documented security flaws. |
| CVE-2025-68825 | Alta (7.5) | 0.23% | — | 24 ago 2026 | HCL Hive is affected by incorrect default permissions which could allow an attacker unauthorized lateral movement, container breakout, and interception of sensitive internal communications. |
| CVE-2026-21755 | Media (5.3) | 0.21% | — | 24 ago 2026 | HCL Hive is affected by a missing rate limit which could allow an attacker unauthorized access via brute-force or credential stuffing attacks, or cause a denial of service. |
| CVE-2026-21751 | Alta (7.4) | 0.16% | — | 24 ago 2026 | HCL Hive is affected by a cryptographic primitive with a risky implementation which could allow an attacker unauthorized lateral compromise or widespread credential leakage if a single internal component is breached. |
| CVE-2026-21759 | Media (4.3) | 0.22% | — | 24 ago 2026 | HCL Hive is affected by an information exposure vulnerability where Swagger documentation was found exposed publicly. Although no sensitive information (e.g., credentials, PII) was discovered, exposing API documentation… |
| CVE-2026-21756 | Alta (7.2) | 0.32% | — | 24 ago 2026 | HCL Hive is affected by a broken access control vulnerability which could allow an attacker or unauthorized user to introduce unverified, malicious, or broken code directly into production environments. |