CVE-2025-52638 PUBLISHED

Multiple security vulnerabilities affect HCL AION

Assigner: HCL
Reserved: 18.06.2025 Published: 16.03.2026 Updated: 16.03.2026

HCL AION is affected by a vulnerability where container base images are not properly authenticated. This may expose the system to potential security risks such as usage of untrusted container images, which could lead to unintended behaviour or security impact.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:H/A:H
CVSS Score: 5.6

Product Status

Vendor HCL
Product AION
Versions Default: unaffected
  • Version 2.0 is affected

References