{"id":"CVE-2026-56595","published":"2026-09-18T09:16:41.900","lastModified":"2026-09-18T13:44:57.517","description":"HCL BigFix Service Management is affected by a CORS Misconfiguration vulnerability due to improperly validated origin headers, which could allow an attacker to craft a malicious web page that interacts with the vulnerable application, enabling unauthorized access to protected resources and restricted APIs on behalf of a victim.","cvssScore":3.1,"cvssSeverity":"LOW","cvssVector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N","cwes":["CWE-942"],"vendors":[],"products":[],"references":[{"url":"https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0133917","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}