Stats Digest Feeds
← Back to all CVEs

CVE-2026-21766

MEDIUM NVD
CVSS Score 5.4
Severity MEDIUM
Published Aug 05, 2026
Vendor unknown

Description

The default login portlet in HCL Digital Experience and Digital Experience Compose insufficiently protects credentials.  Under certain very specific use cases and specific configurations, sensitive information may be written to web server logs.  This only affects applications using the default login portlet.

References