
CVE-2024-42191 – HCL Traveler for Microsoft Outlook (HTMO) is susceptible to COM hijacking
https://notcve.org/view.php?id=CVE-2024-42191
30 May 2025 — HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a COM hijacking vulnerability which could allow an attacker to modify or replace the application with malicious content. • https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0120745 • CWE-427: Uncontrolled Search Path Element •

CVE-2024-42190 – HCL Traveler for Microsoft Outlook (HTMO) is susceptible to DLL hijacking
https://notcve.org/view.php?id=CVE-2024-42190
30 May 2025 — HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a DLL hijacking vulnerability which could allow an attacker to modify or replace the application with malicious content. • https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0120744 • CWE-427: Uncontrolled Search Path Element •

CVE-2025-0278 – An internal path disclosure vulnerability affects HCL Traveler
https://notcve.org/view.php?id=CVE-2025-0278
03 Apr 2025 — HCL Traveler is affected by an internal path disclosure in a Windows application when the application inadvertently reveals internal file paths, in error messages, debug logs, or responses to user requests. HCL Traveler se ve afectado por una divulgación de ruta interna en una aplicación de Windows cuando la aplicación revela inadvertidamente rutas de archivos internas, en mensajes de error, registros de depuración o respuestas a solicitudes de usuario. • https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0120335 • CWE-497: Exposure of Sensitive System Information to an Unauthorized Control Sphere •

CVE-2025-0279 – HCL Traveler is affected by generation of error messages containing sensitive information
https://notcve.org/view.php?id=CVE-2025-0279
03 Apr 2025 — HCL Traveler generates some error messages that provide detailed information about errors and failures, such as internal paths, file names, sensitive tokens, credentials, error codes, or stack traces. Attackers could exploit this information to gain insights into the system's architecture and potentially launch targeted attacks. HCL Traveler genera mensajes de error que proporcionan información detallada sobre errores y fallos, como rutas internas, nombres de archivo, tokens confidenciales, credenciales, có... • https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0120336 • CWE-209: Generation of Error Message Containing Sensitive Information •

CVE-2024-30133 – HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a control flow vulnerability
https://notcve.org/view.php?id=CVE-2024-30133
12 Nov 2024 — HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a control flow vulnerability. The application does not sufficiently manage its control flow during execution, creating conditions in which the control flow can be modified in unexpected ways. • https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0114725 • CWE-670: Always-Incorrect Control Flow Implementation •

CVE-2024-30134 – HCL Traveler for Microsoft Outlook (HTMO) is susceptible to an application modification vulnerability
https://notcve.org/view.php?id=CVE-2024-30134
26 Sep 2024 — The HCL Traveler for Microsoft Outlook executable (HTMO.exe) is being flagged as potentially Malicious Software or an Unrecognized Application. • https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0114723 • CWE-295: Improper Certificate Validation •