Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 14 May 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hclsoftware
Hclsoftware bigfix Scm Reporting |
|
| Vendors & Products |
Hclsoftware
Hclsoftware bigfix Scm Reporting |
Thu, 14 May 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 13 May 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The HCL BigFix SCM Reporting site contains an outdated and unsupported version of the jQuery 1.x library. Since jQuery 1.x has reached end-of-life and no longer receives security updates, it may expose the application to publicly known security weaknesses and increase the risk of client-side attacks such as Cross-Site Scripting (XSS) or manipulation through vulnerable third-party components. | |
| Title | HCL BigFix SCM Reporting is affected by vulnerabilities in jQuery | |
| Weaknesses | CWE-1104 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2026-05-14T12:47:46.358Z
Reserved: 2026-01-05T16:08:22.254Z
Link: CVE-2026-21821
Updated: 2026-05-14T12:47:25.555Z
Status : Awaiting Analysis
Published: 2026-05-13T21:16:41.590
Modified: 2026-05-14T18:24:08.747
Link: CVE-2026-21821
No data.
OpenCVE Enrichment
Updated: 2026-05-14T14:33:35Z