HCL Compass is vulnerable to Cross-Origin Resource Sharing (CORS). This vulnerability can allow an unprivileged remote attacker to trick a legitimate user into accessing a special resource and executing a malicious request.
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0103581