Missing "no cache" headers in HCL Leap permits sensitive data to be cached.
History

Thu, 01 May 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 30 Apr 2025 21:30:00 +0000

Type Values Removed Values Added
Description Missing "no cache" headers in HCL Leap permits sensitive data to be cached.
Title HCL Domino Volt and Domino Leap are affected by missing "no cache" headers
Weaknesses CWE-524
References
Metrics cvssV3_1

{'score': 3.2, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published: 2025-04-30T21:11:44.164Z

Updated: 2025-05-01T15:34:50.518Z

Reserved: 2023-07-06T16:11:42.471Z

Link: CVE-2023-37517

cve-icon Vulnrichment

Updated: 2025-05-01T15:32:01.586Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-04-30T22:15:15.953

Modified: 2025-05-02T13:53:40.163

Link: CVE-2023-37517

cve-icon Redhat

No data.