CVE-2025-52628
EUVD-2025-20668803.02.2026, 19:16
HCL AION is affected by a Cookie with Insecure, Improper, or Missing SameSite vulnerability. This can allow cookies to be sent in cross-site requests, potentially increasing exposure to cross-site request forgery and related security risks. This issue affects AION: 2.0.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hcltech | aion | 2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration