Known Vulnerabilities
CVE-2022-38653
In HCL Digital Experience, customized XSS payload can be constructed such that it is served in the application unencoded.
LOW
CVSS 2.0
Published Dec 15, 2022
CVE-2022-38662
In HCL Digital Experience, URLs can be constructed to redirect users to untrusted sites.
MEDIUM
CVSS 6.1
Published Dec 15, 2022
CVE-2021-27774
User input included in error response, which could be used in a phishing attack.
LOW
CVSS 3.1
Published Sep 22, 2022