CVE-2026-56457

Severity CVSS v4.0:
Pending analysis
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
29/06/2026
Last modified:
02/07/2026

Description

HCL DevOps Deploy / HCL Launch is susceptible to an exposure of sensitive information vulnerability in output logs. This exposure could allow an attacker with access to the logs to potentially obtain sensitive values related to that step.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hcltechsw:hcl_devops_deploy:*:*:*:*:*:*:*:* 8.0.0.0 (including) 8.0.1.14 (excluding)
cpe:2.3:a:hcltechsw:hcl_devops_deploy:*:*:*:*:*:*:*:* 8.1.0.0 (including) 8.1.2.7 (excluding)
cpe:2.3:a:hcltechsw:hcl_devops_deploy:*:*:*:*:*:*:*:* 8.2.0.0 (including) 8.2.2.0 (excluding)
cpe:2.3:a:hcltechsw:hcl_launch:*:*:*:*:*:*:*:* 7.3.0.0 (including) 7.3.2.19 (excluding)