CVE-2023-45696: Hcltech Sametime
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
Sametime is impacted by sensitive fields with autocomplete enabled in the Legacy web chat client. By default, this allows user entered data to be stored by the browser.
Affected products
- Hcltech Sametime: from 11.5, before 12.0.2 (fixed in 12.0.2)
Published 2024-02-10. Last modified 2026-06-17.