A vulnerability classified as critical has been found in HCL Traveler 3.0.11/3.0.12/3.0.14. Affected by this vulnerability is an unknown functionality of the component HTTP Header Validation Handler. Performing a manipulation results in origin validation error.

This vulnerability is cataloged as CVE-2026-21790. It is possible to initiate the attack remotely. There is no exploit available.

It is recommended to upgrade the affected component.