HCL Digital Experience and HCL Digital Experience Compose could be susceptible to Host header injection. An attacker can manipulate the Host header and cause the application to behave in unexpected ways.
Metrics
Affected Vendors & Products
References
History
Wed, 10 Jun 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech digital Experience Compose
|
|
| CPEs | cpe:2.3:a:hcltech:digital_experience:9.5:-:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf171:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf172:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf173:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf17:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf181:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf182:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf183:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf184:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf18:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf191:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf192:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf193:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf194:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf195:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf196:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf197:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf198:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf199:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf19:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf200:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf201:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf202:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf203:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf204:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf205:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf206:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf207:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf208:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf209:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf210:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf211:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf212:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf213:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf214:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf215:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf216:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf217:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf218:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf219:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf220:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf221:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf222:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf223:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf224:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf225:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf226:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf227:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf228:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf229:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf230:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf231:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf232:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf233:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience:9.5:cf234:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:-:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf224:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf225:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf226:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf227:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf228:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf229:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf230:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf231:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf232:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf233:*:*:*:*:*:* cpe:2.3:a:hcltech:digital_experience_compose:9.5:cf234:*:*:*:*:*:* |
|
| Vendors & Products |
Hcltech digital Experience Compose
|
Tue, 09 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Jun 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech digital Experience Hcltech dx Compose |
|
| Vendors & Products |
Hcltech
Hcltech digital Experience Hcltech dx Compose |
Fri, 05 Jun 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL Digital Experience and HCL Digital Experience Compose could be susceptible to Host header injection. An attacker can manipulate the Host header and cause the application to behave in unexpected ways. | |
| Title | HCL Digital Experience and HCL Digital Experience Compose could be susceptible to Host header injection | |
| Weaknesses | CWE-601 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published: 2026-06-05T05:58:31.449Z
Updated: 2026-06-09T14:38:10.191Z
Reserved: 2026-01-05T16:08:22.255Z
Link: CVE-2026-21826
Updated: 2026-06-09T13:28:08.863Z
Status : Analyzed
Published: 2026-06-05T07:16:29.883
Modified: 2026-06-10T19:24:47.230
Link: CVE-2026-21826
No data.
ReportizFlow