CVE-2026-56597

HCL BigFix Service Management is affected by a Sensitive Information Leakage vulnerability, which could allow an unauthenticated attacker to extract internal IP addresses from the application's responses, enabling them to map the underlying network topology and identify potential internal targets.

  • Published Sep 18, 2026
  • CVSS 3.1 low
  • 0.2% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-56597 at the National Vulnerability Database