CVE-2025-52646 PUBLISHED

HCL AION is affected by a vulnerability where certain offering configurations may permit execution of potentially harmful SQL queries.

Assigner: HCL
Reserved: 18.06.2025 Published: 16.03.2026 Updated: 16.03.2026

HCL AION is affected by a vulnerability where certain offering configurations may permit execution of potentially harmful SQL queries. Improper validation or restrictions on query execution could expose the system to unintended database interactions or limited information exposure under specific conditions.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:N
CVSS Score: 2.2

Product Status

Vendor HCL
Product AION
Versions Default: unaffected
  • Version 2.0 is affected

References