German government CERT advisories disclosed multiple vulnerabilities affecting the HCL BigFix Platform, with separate notices identifying security issues in the enterprise endpoint management product. The advisories indicate that more than one flaw was reported across BigFix components, expanding the scope of risk for organizations that rely on the platform for device management, patching, and compliance operations.
The notices provide limited public detail, but the repeated publication of advisories on HCL BigFix suggests ongoing remediation activity and a need for defenders to review vendor guidance, assess exposed BigFix infrastructure, and prioritize patch deployment. Organizations using BigFix should verify affected versions, apply available updates, and monitor administrative systems for signs of misuse while additional technical details remain sparse.

See real exploitation activity before you spend the cycle.
7 events from the most recent confirmed update back to the earliest known activity.
dCERT published advisory 2026-1519 for HCL BigFix describing a vulnerability that could allow manipulation of data and cross-site scripting. This is a new official disclosure affecting the HCL BigFix product line.
dCERT published advisory 2026-1415 covering multiple vulnerabilities in HCL BigFix WebUI Applications that could allow information disclosure. This is a new official disclosure affecting a specific HCL BigFix component.
dCERT published advisory 2026-1370 covering multiple vulnerabilities in HCL BigFix Service Management. This represents a new official disclosure affecting the HCL BigFix product ecosystem.
dCERT published advisory 2026-1194 for HCL BigFix, describing a vulnerability that could allow bypassing security measures and potentially enable privilege escalation. This appears to be a new official disclosure affecting the HCL BigFix product line.
dCERT published advisory 2026-1164 covering multiple vulnerabilities in HCL BigFix. This represents a separate advisory and likely an additional or updated disclosure affecting the product line.
dCERT published advisory 2026-0938 بشأن multiple vulnerabilities affecting the HCL BigFix Platform. The reference indicates a coordinated disclosure or notification of security issues in the product.
dCERT published advisory 2026-0543 covering multiple vulnerabilities in HCL BigFix. This represents an earlier official disclosure affecting the HCL BigFix product line.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
7 references tracked. Mallory keeps watching after this page renders.
dcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.