CVE-2026-21753

HCL Hive is affected by weak software supply chain governance, which could lead to the inclusion of vulnerable, unmaintained, or malicious third-party dependencies within the application environment.

Scoring

Severity
MEDIUM
CVSS base score
4.2
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N
EPSS probability
0.14%
CWE
CWE-1104
Published
2026-08-25
Last modified
2026-08-25

Affected products

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs