VYPR

by HCLTech

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2026-21791Low0.213.30.00Mar 10, 2026HCL Sametime for Android is impacted by a sensitive information disclosure. Hostnames information is written in application logs and certain URL
CVE-2025-31966Low0.182.70.00Mar 17, 2026HCL Sametime is vulnerable to broken server-side validation. While the application performs client-side input checks, these are not enforced by the web server. An attacker can bypass these restrictions by sending manipulated HTTP requests directly to the server.