CVE-2025-52603
20.02.2026, 16:22
HCL Connections is vulnerable to information disclosure. In a very specific user navigation scenario, this could allow a user to obtain limited information when a single piece of internal metadata is returned in the browser.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hcltech | connections | 7.0 |
| hcltech | connections | 8.0 |
| hcltech | connections | 8.0:cumulative_release1 |
| hcltech | connections | 8.0:cumulative_release10 |
| hcltech | connections | 8.0:cumulative_release2 |
| hcltech | connections | 8.0:cumulative_release3 |
| hcltech | connections | 8.0:cumulative_release4 |
| hcltech | connections | 8.0:cumulative_release5 |
| hcltech | connections | 8.0:cumulative_release6 |
| hcltech | connections | 8.0:cumulative_release7 |
| hcltech | connections | 8.0:cumulative_release8 |
| hcltech | connections | 8.0:cumulative_release9 |
𝑥
= Vulnerable software versions