Loading HuntDB...

GHSA-prqw-x27x-86h2

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

HCL DRYiCE Lucy (now AEX) is affected by a Cross Origin Resource Sharing (CORS) vulnerability. The mobile app is vulnerable to a CORS misconfiguration which could potentially allow unauthorized access to the application resources from any web domain and enable cache poisoning attacks.

Related CVEs

Key Information

GHSA ID
GHSA-prqw-x27x-86h2
Published
May 14, 2024 3:32 PM
Last Modified
May 14, 2024 3:32 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 14, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.