CVE-2026-21770 MEDIUM

CVE-2026-21770: HCL Traveler for Microsoft Outlook (HTMO) is susceptible to DLL hijacking

Vendor Hclsoftware
Product HCL Traveler for Microsoft Outlook (HTMO)
Weakness CWE-427
Published July 17, 2026
Last update July 17, 2026

CVSS base score

6.5/10
Attack vector Local
Attack complexity Low
Privileges required High
User interaction Required
Confidentiality High
Integrity High

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H

What the vulnerability does

01Description

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a DLL hijacking vulnerability which could allow an attacker to modify or replace the application with malicious content.

Key dates

02Disclosure timeline

July 17, 2026 CVE published
July 17, 2026 Record updated