CVE-2026-21786: Hcltech Sametime

Low severity, CVSS 3.3. EPSS: 0.1% chance of exploitation in the next 30 days.

HCL Sametime for iOS is impacted by a sensitive information disclosure. Hostnames information is written in application logs and certain URLs.

Affected products

  • Hcltech Sametime: before 12.0.26 (fixed in 12.0.26)

Published 2026-03-05. Last modified 2026-06-17.