First published: Wed Apr 30 2025(Updated: )
Missing "no cache" headers in HCL Leap permits sensitive data to be cached.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL Domino Volt | ||
HCL Domino Leap |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-37517 has a moderate severity rating due to the potential exposure of sensitive data.
To fix CVE-2023-37517, ensure that 'no cache' headers are implemented correctly in HCL Leap and Domino Volt.
CVE-2023-37517 can result in sensitive data being cached, which may include user information and application data.
CVE-2023-37517 affects HCL Domino Leap and HCL Domino Volt in all versions.
CVE-2023-37517 was disclosed in 2023 as a vulnerability affecting HCL software products.