First published: Thu Apr 24 2025(Updated: )
Insufficient sanitization policy in HCL Leap allows client-side script injection in the deployed application through the HTML widget.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL Leap |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-30113 is classified as a medium severity vulnerability due to the potential for client-side script injection.
To fix CVE-2024-30113, ensure proper sanitization of user input in the HTML widget within HCL Leap.
CVE-2024-30113 affects HCL Leap across its various versions.
The risks of CVE-2024-30113 include the potential for malicious script execution, which can lead to data theft or application compromise.
As of now, there are no reported active exploits for CVE-2024-30113.