Every CVE whose affected-product data names Hcltech Dfx Server, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (4)
CVE-2026-35147 — CVSS 8.2 (high): HCL DFXServer is affected by a Broken Authentication vulnerability via direct API access. The application fails to verify the user's…
CVE-2026-35149 — CVSS 8.2 (high): HCL DFXServer is affected by an Authentication Bypass vulnerability via server response manipulation. An unauthorized user without valid…
CVE-2026-35146 — CVSS 6.3 (medium): HCL DFXServer is affected by an Unencrypted Communication vulnerability. The application permits users to establish connections over…
CVE-2026-35148 — CVSS 6.3 (medium): HCL DFXServer is affected by a Missing Access Control vulnerability. This vulnerability states that certain endpoints are accessible…