CVE-2026-56579

LOW

HCL MyCloud was affected with Exposure of Sensitive Information to an Unauthorized Actor.

Title source: cna
STIX 2.1

Description

HCL MyCloud was affected with License Key Revealed in HTTP Response. It may enable attackers to misuse the exposed information and compromise the application's security.

References (1)

Core 1

Scores

CVSS v3 3.1
EPSS 0.0016
EPSS Percentile 5.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-200
Status published
Products (2)
HCLSoftware/MyCloud 10.8.2
hcltech/mycloud 10.8.1
Published Jul 21, 2026
Tracked Since Jul 21, 2026