GHSA-g6h8-p8p4-98f2MediumCVSS 4.2

HCL Aftermarket EPC is vulnerable to attack as the application implements an HTML5 cross-origin...

Published
July 17, 2026
Last Modified
July 17, 2026

🔗 CVE IDs covered (1)

📋 Description

HCL Aftermarket EPC is vulnerable to attack as the application implements an HTML5 cross-origin resource sharing (CORS) policy for this request that allows access from any domain (*-Wildcard).

🔗 References (3)