HCL AION is affected by a vulnerability where JavaScript responses containing data could be referenced by external pages, potentially allowing sensitive information to be captured by an attacker-controlled page (JavaScript hijacking) under certain conditions.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-13 14:16
Updated : 2026-08-28 16:08
NVD link : CVE-2025-62318
Mitre link : CVE-2025-62318
CVE.ORG link : CVE-2025-62318
JSON object : View
Products Affected
No product.
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
