CVE-2024-30146: Hcltech Domino Leap

Low severity, CVSS 2.7. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper access control of endpoint in HCL Domino Leap allows certain admin users to import applications from the server's filesystem.

Affected products

  • Hcltech Domino Leap: from 1.1.3, before 1.1.5 (fixed in 1.1.5)

Published 2025-04-30. Last modified 2026-06-17.