Vulnerabilities > Hcltechsw > HCL Devops Deploy > 8.1.0

DATE CVE VULNERABILITY TITLE RISK
2025-03-24 CVE-2025-0255 OS Command Injection vulnerability in Hcltechsw HCL Devops Deploy and HCL Launch
HCL DevOps Deploy / HCL Launch could allow a remote privileged authenticated attacker to execute arbitrary commands on the system by sending specially crafted input containing special elements.
network
low complexity
hcltechsw CWE-78
7.2
2025-03-24 CVE-2025-0256 Missing Authentication for Critical Function vulnerability in Hcltechsw HCL Devops Deploy and HCL Launch
HCL DevOps Deploy / HCL Launch could allow an authenticated user to obtain sensitive information about other users on the system due to missing authorization for a function.
network
low complexity
hcltechsw CWE-306
6.5