VYPR
High severity7.1NVD Advisory· Published May 14, 2024· Updated Jun 17, 2026

CVE-2024-23576

CVE-2024-23576

Description

Security vulnerability in HCL Commerce 9.1.12 and 9.1.13 could allow denial of service, disclosure of user personal data, and performing of unauthorized administrative operations.

Affected products

3
  • cpe:2.3:a:hcltechsw:hcl_commerce:*:*:*:*:*:*:*:*
    Range: >=9.1.12,<9.1.14
  • HCL Software/Commercellm-create2 versions
    9.1.12, 9.1.13+ 1 more
    • (no CPE)range: 9.1.12, 9.1.13
    • (no CPE)range: 9.1.12, 9.1.13

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.