Low severity2.0NVD Advisory· Published Dec 19, 2022· Updated Jun 17, 2026
CVE-2022-38653
CVE-2022-38653
Description
In HCL Digital Experience, customized XSS payload can be constructed such that it is served in the application unencoded.
Affected products
5cpe:2.3:a:hcltech:digital_experience:8.5:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:hcltech:digital_experience:8.5:*:*:*:*:*:*:*
- cpe:2.3:a:hcltech:digital_experience:9.0:*:*:*:*:*:*:*
- cpe:2.3:a:hcltech:digital_experience:9.5:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: 8.5, 9.0, 9.5
Patches
Vulnerability mechanics
References
1- support.hcltechsw.com/csmnvdVendor Advisory
News mentions
0No linked articles in our index yet.