CVE-2026-56457 PUBLISHED

HCL DevOps Deploy / HCL Launch is susceptible to an exposure of sensitive information

Assigner: HCL
Reserved: 22.06.2026 Published: 29.06.2026 Updated: 29.06.2026

HCL DevOps Deploy / HCL Launch is susceptible to an exposure of sensitive information vulnerability in output logs. This exposure could allow an attacker with access to the logs to potentially obtain sensitive values related to that step.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS Score: 4.3

Product Status

Vendor HCLSoftware
Product HCL DevOps Deploy / HCL Launch
Versions Default: unaffected
  • Version 7.3-7.3.2.18, 8.0-8.0.1.13, 8.1-8.1.2.6, 8.2-8.2.1.0 is affected

References

Problem Types

  • CWE-532 Insertion of sensitive information into log file CWE