HCL Launch could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
HCL Launch may mishandle input validation of an uploaded archive file leading to a denial of service due to resource exhaustion.