CVE-2024-42191: Hcltech Traveler For Microsoft Outlook

Critical severity, CVSS 9.8. EPSS: 0.3% chance of exploitation in the next 30 days.

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a COM hijacking vulnerability which could allow an attacker to modify or replace the application with malicious content.

Affected products

  • Hcltech Traveler For Microsoft Outlook: before 3.0.12 (fixed in 3.0.12)

Published 2025-05-30. Last modified 2026-06-17.