Description
HCL Digital Experience is susceptible to cross site scripting (XSS) in an administrative UI with restricted access.
Problem types
CWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')
Product status
8.5, 9.0, 9.5
References
support.hcl-software.com/...rticle&sysparm_article=KB0123435