cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2022-38653,https://securityvulnerability.io/vulnerability/CVE-2022-38653,HCL Digital Experience is susceptible to cross-site scripting (XSS),"In HCL Digital Experience, customized XSS payload can be constructed such that it is served in the application unencoded. ",Hcl Software,Hcl Digital Experience,2,LOW,0.000539999979082495,false,false,false,false,,false,false,2022-12-19T11:15:00.000Z,0 CVE-2022-38662,https://securityvulnerability.io/vulnerability/CVE-2022-38662,HCL Digital Experience is susceptible to open redirects," In HCL Digital Experience, URLs can be constructed to redirect users to untrusted sites. ",Hcl Software,Hcl Digital Experience,6.1,MEDIUM,0.0007200000109151006,false,false,false,false,,false,false,2022-12-15T20:36:54.482Z,0 CVE-2021-27774,https://securityvulnerability.io/vulnerability/CVE-2021-27774,An injection vulnerability affects HCL Digital Experience,"User input included in error response, which could be used in a phishing attack.",Hcl Software,Hcl Digital Experience,3.1,LOW,0.0007200000109151006,false,false,false,false,,false,false,2022-09-22T21:15:00.000Z,0 CVE-2020-4081,https://securityvulnerability.io/vulnerability/CVE-2020-4081,,"In Digital Experience 8.5, 9.0, and 9.5, WSRP consumer is vulnerable to cross-site scripting (XSS).",HCL Software,Hcl Digital Experience,6.1,MEDIUM,0.0007800000021234155,false,false,false,false,,false,false,2021-02-02T20:08:48.000Z,0 CVE-2020-14255,https://securityvulnerability.io/vulnerability/CVE-2020-14255,,HCL Digital Experience 9.5 containers include vulnerabilities that could expose sensitive data to unauthorized parties via crafted requests. These affect containers only. These do not affect traditional on-premise installations.,HCL Software,Hcl Digital Experience,7.5,HIGH,0.0016799999866634607,false,false,false,false,,false,false,2021-02-02T19:40:31.000Z,0 CVE-2020-14221,https://securityvulnerability.io/vulnerability/CVE-2020-14221,,"HCL Digital Experience 8.5, 9.0, and 9.5 exposes information about the server to unauthorized users.",HCL Software,Hcl Digital Experience,4.9,MEDIUM,0.0006500000017695129,false,false,false,false,,false,false,2021-02-02T19:31:57.000Z,0 CVE-2020-14222,https://securityvulnerability.io/vulnerability/CVE-2020-14222,,"HCL Digital Experience 8.5, 9.0, 9.5 is susceptible to cross site scripting (XSS). One subcomponent is vulnerable to reflected XSS. In reflected XSS, an attacker must induce a victim to click on a crafted URL from some delivery mechanism (email, other web site).",HCL Software,Hcl Digital Experience,6.1,MEDIUM,0.0007800000021234155,false,false,false,false,,false,false,2020-11-05T16:52:20.000Z,0 CVE-2020-14223,https://securityvulnerability.io/vulnerability/CVE-2020-14223,,"HCL Digital Experience 8.5, 9.0, 9.5 is susceptible to cross-site scripting (XSS). The vulnerability could be employed in a reflected or non-persistent XSS attack.",HCL Software,Hcl Digital Experience,6.1,MEDIUM,0.0007800000021234155,false,false,false,false,,false,false,2020-10-01T19:31:53.000Z,0 CVE-2020-4101,https://securityvulnerability.io/vulnerability/CVE-2020-4101,,"""HCL Digital Experience is susceptible to Server Side Request Forgery.""",HCL Software,"""hcl Digital Experience""",9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2020-06-11T13:20:13.000Z,0