---
id: CVE-2025-59868
title: >-
  HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a sensitive data
  exposure vulnerability which could allow an attacker to exploit application
  information to then attempt additional attacks and cause unknown behavior in
  the app…
summary: >-
  HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a sensitive data
  exposure vulnerability which could allow an attacker to exploit application
  information to then attempt additional attacks and cause unknown behavior in
  the app…
severity: medium
cvss: 5.5
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-532
vendor: hcltech
product: traveler_for_microsoft_outlook
affected:
  - traveler_for_microsoft_outlook < 3.0.15
patched:
  - traveler_for_microsoft_outlook 3.0.15
published: '2026-06-27'
updated: '2026-09-29'
sourceUpdated: '2026-09-29T19:10:00.160'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-59868'
references:
  - url: >-
      https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0131419
    label: psirt@hcl.com
tags:
  - nvd
epss: 0.00151
epssPercentile: 0.03602
ingestedAt: '2026-09-29T19:44:04.094Z'
---

## Overview

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a sensitive data exposure vulnerability which could allow an attacker to exploit application information to then attempt additional attacks and cause unknown behavior in the application.

## Affected

- `traveler_for_microsoft_outlook < 3.0.15`

## Remediation

Upgrade past the affected range:

- `traveler_for_microsoft_outlook 3.0.15`
