CVE-2026-35142: Hcltech Dfxanalytics

High severity, CVSS 8.2. EPSS: 0.3% chance of exploitation in the next 30 days.

HCL DFXAnalytics is affected by an Internal IP Address Disclosure vulnerability. The application includes internal IP address details within its generated server responses, which could allow a remote attacker to gather sensitive network topology information and use it to map the internal infrastructure for further targeted attacks.

Affected products

  • Hcltech Dfxanalytics: up to and including 3.0

Published 2026-07-16. Last modified 2026-07-17.