ZeroHour

CVE-2025-52659

CVSS 3.1
7.5 high
EPSS
<1%p6
Published
()
Modified
Description

HCL AION version 2 is affected by a Cacheable HTTP Response vulnerability. This may lead to unintended storage of sensitive or dynamic content, potentially resulting in unauthorized access or information disclosure.

Vendors
hcltech
Products
aion
Weakness
CWE-525
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.