CVE-2025-62317

low

Description

HCL AION is affected by a vulnerability where sensitive information may be included in URL parameters. Passing sensitive data in URLs may expose it through browser history, logs, or intermediary systems, potentially leading to unintended information disclosure under certain conditions.

References

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0130636

Details

Source: Mitre, NVD

Published: 2026-05-14

Updated: 2026-05-14

Risk Information

CVSS v2

Base Score: 1.4

Vector: CVSS2#AV:A/AC:H/Au:S/C:P/I:N/A:N

Severity: Low

CVSS v3

Base Score: 2.6

Vector: CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:C/C:L/I:N/A:N

Severity: Low