CVE-2025-52652 PUBLISHED

HCL MyXalytics is affected by multiple security vulnerabilities.

Assigner: HCL
Reserved: 18.06.2025 Published: 07.09.2026 Updated: 07.09.2026

HCL MyXalytics was affected by Content Spoofing Vulnerability. It may allow an attacker to manipulate displayed content, making it appear as though it originates from a trusted source, potentially leading to phishing or data theft.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
CVSS Score: 3.5

Product Status

Vendor HCL Software
Product MyXalytics
Versions Default: unaffected
  • Version v6.6, v6.7, v6.8 and v6.8.0.1 is affected

References

Problem Types

  • CWE-451 User Interface (UI) Misrepresentation of Critical Information CWE