CVE-2023-37507: An information disclosure vulnerability affects HCL DevOps Plan
Published Jul 21, 2026
·Updated
HCL DevOps Plan is susceptible to an information disclosure that can allow an attacker to focus their attacks based upon the information revealed.
Affected Software
2 affected components
HCL DevOps Plan
hcltech Devops Plan<3.0.5
Event History
Jul 21, 2026
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
DescriptionWeakness
Data Sourced
via NVD·06:16 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-37507?
CVE-2023-37507 has a medium severity rating of 6.9 according to its CVSS score.
2
What does CVE-2023-37507 affect?
CVE-2023-37507 affects the HCL DevOps Plan and can lead to information disclosure.
3
What type of vulnerability is CVE-2023-37507?
CVE-2023-37507 is classified as an information disclosure vulnerability.
4
How can attackers exploit CVE-2023-37507?
Attackers can exploit CVE-2023-37507 to tailor their attacks based on sensitive information revealed by the disclosure.
5
How do I mitigate CVE-2023-37507?
To mitigate CVE-2023-37507, it is advised to apply security patches released by HCL Software for the DevOps Plan.