Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 18 Sep 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech hcl Devops Deploy Hcltech hcl Launch |
|
| Vendors & Products |
Hcltech
Hcltech hcl Devops Deploy Hcltech hcl Launch |
|
| Metrics |
ssvc
|
Thu, 17 Sep 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL DevOps Deploy / HCL Launch is susceptible to an information disclosure vulnerability when processing redacted property values. If a deployment is configured with a secure property that starts with certain non-ASCII characters, the redaction engine may fail to mask subsequent ASCII secure values embedded inside insecure properties. | |
| Title | HCL DevOps Deploy / HCL Launch is susceptible to an Improper Removal of Sensitive Information Before Storage or Transfer | |
| Weaknesses | CWE-212 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2026-09-18T20:07:37.150Z
Reserved: 2026-07-28T13:21:59.903Z
Link: CVE-2026-67071
Updated: 2026-09-18T20:07:33.930Z
Status : Awaiting Analysis
Published: 2026-09-17T21:17:18.810
Modified: 2026-09-18T20:17:20.923
Link: CVE-2026-67071
No data.
OpenCVE Enrichment
Updated: 2026-09-19T00:45:14Z
-
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer