CVE-2025-52629
EUVD-2025-20668203.02.2026, 18:16
HCL AION is susceptible to Missing Content-Security-Policy. An The absence of a CSP header may increase the risk of cross-site scripting and other content injection attacks by allowing unsafe scripts or resources to execute..This issue affects AION: 2.0.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hcltech | aion | 2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration