CVE-2026-21754

Summary

HCL Hive is affected by multiple infrastructure and network configuration vulnerabilities, which could lead to unauthorized lateral movement, container breakout, and sensitive data exposure within internal communications.

Affected Software

VendorProductVersion RangeStatus
HCL SoftwareHiveV1.0affected

Weaknesses

  • CWE-1004: CWE-1004 Sensitive Cookie Without 'HttpOnly' Flag

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References