First published: Wed Apr 30 2025(Updated: )
Multiple vectors in HCL Domino Volt and Domino Leap allow client-side script injection in the authoring environment and deployed applications.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL Domino Volt | ||
HCL Domino Leap |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-30145 is considered a high-severity vulnerability due to the potential for client-side script injection.
To fix CVE-2024-30145, apply the latest patches provided by HCL for Domino Volt and Domino Leap.
CVE-2024-30145 affects applications developed in HCL Domino Volt and Domino Leap that are deployed in the authoring environment.
CVE-2024-30145 can be exploited for client-side script injection attacks, potentially compromising application security.
Currently, the best practice is to limit the use of affected features in HCL Domino Volt and Domino Leap until a patch is applied.