CVE-2026-56619: HCL BigFix Mobile is vulnerable to Reflected Cross-Site Scripting (Reflected XSS)
Published Aug 10, 2026
·Updated
HCL BigFix Mobile is vulnerable to Reflected Cross-Site Scripting (Reflected XSS) due to insufficient validation and output encoding of user-controlled input.
Affected Software
1 affected component
HCL BigFix Mobile
Event History
Aug 10, 2026
CVE Published
via MITRE·04:14 PM
Data Sourced
via MITRE·04:14 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-56619?
The severity of CVE-2026-56619 is classified as medium with a score of 5.4.
2
What type of vulnerability is identified in CVE-2026-56619?
CVE-2026-56619 is a Reflected Cross-Site Scripting (Reflected XSS) vulnerability.
3
How do I fix CVE-2026-56619?
To fix CVE-2026-56619, implement proper validation and output encoding for user-controlled input within HCL BigFix Mobile.
4
What impact does CVE-2026-56619 have on users?
CVE-2026-56619 can lead to unauthorized access and manipulation of user sessions affecting user confidentiality and integrity.
5
Which software is affected by CVE-2026-56619?
CVE-2026-56619 affects HCL BigFix Mobile.