Unsafe default file type filter policy in HCL
Leap allows execution of unsafe JavaScript in deployed applications.
Metrics
Affected Vendors & Products
References
History
Fri, 25 Apr 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 24 Apr 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Unsafe default file type filter policy in HCL Leap allows execution of unsafe JavaScript in deployed applications. | |
Title | HCL Leap is affected by an unrestricted upload of file with dangerous type vulnerability | |
Weaknesses | CWE-434 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: HCL
Published: 2025-04-24T20:37:58.961Z
Updated: 2025-04-25T19:36:09.092Z
Reserved: 2022-11-04T21:08:27.038Z
Link: CVE-2022-44760

Updated: 2025-04-25T19:35:34.468Z

Status : Awaiting Analysis
Published: 2025-04-24T21:15:20.737
Modified: 2025-04-29T13:52:28.490
Link: CVE-2022-44760

No data.