← Retour aux CVEs
CVE-2025-52659
LOW2.8
Description
HCL AION version 2 is affected by a Cacheable HTTP Response vulnerability. This may lead to unintended storage of sensitive or dynamic content, potentially resulting in unauthorized access or information disclosure.
Details CVE
Score CVSS v3.12.8
SeveriteLOW
Vecteur CVSSCVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L
Vecteur d'attaqueLOCAL
ComplexiteLOW
Privileges requisLOW
Interaction utilisateurREQUIRED
Publie1/19/2026
Derniere modification1/30/2026
Sourcenvd
Observations honeypot0
Produits affectes
hcltech:aion
Faiblesses (CWE)
CWE-525
References
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.