CVE-2026-21753: HCL Hive is affected by multiple security vulnerabilities.
Published Aug 25, 2026
·Updated
HCL Hive is affected by weak software supply chain governance, which could lead to the inclusion of vulnerable, unmaintained, or malicious third-party dependencies within the application environment.
Affected Software
1 affected component
HCL Hive
Event History
Aug 25, 2026
CVE Published
via MITRE·10:50 AM
Data Sourced
via MITRE·10:50 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What must an attacker do to exploit this issue?
The vector is network-based, requires high attack complexity, and does not require privileges. Exploitation also requires user interaction.
2
What is the potential impact if exploitation succeeds?
Successful exploitation may result in limited confidentiality and integrity impact. No availability impact is indicated.