Unrated severityNVD Advisory· Published Apr 30, 2025· Updated May 1, 2025
HCL Domino Volt and Domino Leap are affected by a Cross-site scripting (XSS) vulnerability
CVE-2023-37535
Description
Insufficient URI protocol whitelist in HCL Domino Volt and Domino Leap allow script injection through query parameters.
Affected products
3- HCL Software/HCL Domino Leapv5Range: 1.0 - 1.0.5; 1.1 - 1.1.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.