๐Ÿ” CVE Alert

CVE-2026-56619

MEDIUM 5.4

HCL BigFix Mobile is vulnerable to Reflected Cross-Site Scripting (Reflected XSS)

CVSS Score
5.4
EPSS Score
0.0%
EPSS Percentile
0th

HCL BigFix Mobile is vulnerable to Reflected Cross-Site Scripting (Reflected XSS) due to insufficient validation and output encoding of user-controlled input.

CWE CWE-79
Vendor hclsoftware
Product hcl bigfix mobile
Published Aug 10, 2026
Last Updated Aug 10, 2026
Stay Ahead of the Next One

Get instant alerts for hclsoftware hcl bigfix mobile

Be the first to know when new medium vulnerabilities affecting hclsoftware hcl bigfix mobile are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
Required
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
None

Affected Versions

HCLSoftware / HCL BigFix Mobile
<=3.6

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
support.hcl-software.com: https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0132661