HCL Launch may mishandle input validation of an uploaded archive file leading to a denial of service due to resource exhaustion.
HCL Launch could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.