CNNVD-202510-1460 Information

CNNVD ID

CNNVD-202510-1460

CVE-2025-52635

  • CNNVD Published: 2025-10-10

Description (Chinese)

HCL AION是印度HCL公司的一款AI生命周期管理平台。 HCL AION 2.0版本存在安全漏洞,该漏洞源于未强制执行脚本中的可信类型,可能导致内容安全策略绕过。

Description (English)

HCL AION is an AI life-cycle management platform for HCL India. There is a security loophole in HCL AION 2.0, which stems from the credible type in the unenforceable script and may lead to the circumvention of content security strategies.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

HCL

Published

2025-10-10

Last Modified

2026-02-24

References

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0124444

Patch

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0124444

Share on: