High severity8.6NVD Advisory· Published Dec 12, 2022· Updated Jun 17, 2026
CVE-2022-38656
CVE-2022-38656
Description
HCL Commerce, when using Elasticsearch, can allow a remote attacker to cause a denial of service attack on the site and make administrative changes.
Affected products
3(expand)+ 1 more
- (no CPE)
- (no CPE)range: 9.1.8 - 9.1.11
Patches
Vulnerability mechanics
References
1- support.hcltechsw.com/csmnvdVendor Advisory
News mentions
0No linked articles in our index yet.