VYPR

Devops Plan

by HCLTech

CVEs (4)

  • CVE-2025-36364MedMar 3, 2026
    risk 0.40cvss 6.2epss 0.00

    IBM DevOps Plan 3.0.0 through 3.0.5 allows web page cache to be stored locally which can be read by another user on the system.

  • CVE-2025-36363MedMar 3, 2026
    risk 0.38cvss 5.9epss 0.00

    IBM DevOps Plan 3.0.0 through 3.0.5 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.

  • CVE-2023-37507HigJul 21, 2026
    risk 0.00cvss 7.5epss 0.00

    HCL DevOps Plan is susceptible to an information disclosure that can allow an attacker to focus their attacks based upon the information revealed.

  • CVE-2023-37508MedJul 21, 2026
    risk 0.00cvss 6.1epss 0.00

    HCL DevOps Plan is potentially susceptible to Cross-Site Scripting (XSS) which could allow an attacker to exploit this vulnerability if certain browser weaknesses are present.