← Zurück zur CVE-Suche

CVE-2026-21836

HCL DominoIQ

Beschreibung

The HCL DominoIQ RAG feature is affected by a Broken Access Control vulnerability. Under certain circumstances, document level access restrictions will be ignored when determining what data to return from an AI query. This could enable an authenticated attacker to view sensitive data.

CVSS 6.5EPSS 0.264%Risiko 0.67
Quelle öffnen
Veröffentlicht
2026-05-20 14:16:36
Betroffene Versionen
unknown
Typ
Installed app
Zuletzt geändert
2026-07-23 12:10:00
Vektor
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N