A vulnerability described as very critical has been identified in HCL MyCloud 10.8.2. Affected by this issue is some unknown functionality of the component IIS Server. Such manipulation leads to access of memory location after end of buffer.

This vulnerability is listed as CVE-2026-56580. The attack may be performed from remote. There is no available exploit.