CVE-2026-67101

Summary

HCL BigFix Service Management is affected by a Server-Side Request Forgery (SSRF) vulnerability in its search functionality, which could allow an attacker to force the application server to send requests to internal systems that are not accessible from the internet.

Affected Software

VendorProductVersion RangeStatus
HCL SoftwareHCL BigFix Service ManagementV23affected

Weaknesses

  • CWE-918: CWE-918 Server-Side Request Forgery (SSRF)

References