Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 28 Jul 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech devops Loop |
|
| Vendors & Products |
Hcltech
Hcltech devops Loop |
Fri, 17 Jul 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL DevOps Loop is affected by missing HTTP security headers. Missing security headers may reduce browser protections against common web-based attacks such as clickjacking, MIME-type sniffing, and cross-site scripting. | |
| Title | Missing HTTP Security Headers in DevOps Loop | |
| Weaknesses | CWE-644 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2026-07-17T17:53:24.498Z
Reserved: 2026-01-05T16:07:58.366Z
Link: CVE-2026-21762
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-29T02:15:17Z
-
CWE-644
Improper Neutralization of HTTP Headers for Scripting Syntax