CVE-2025-55249

HCL AION is affected by a Missing Security Response Headers vulnerability. The absence of standard security headers may weaken the application’s overall security posture and increase its susceptibility to common web-based attacks.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hcltech:aion:2.0.0:*:*:*:*:*:*:*

History

25 Apr 2026, 18:05

Type Values Removed Values Added
Summary
  • (es) HCL AION está afectado por una vulnerabilidad de encabezados de respuesta de seguridad faltantes. La ausencia de encabezados de seguridad estándar puede debilitar la postura de seguridad general de la aplicación y aumentar su susceptibilidad a ataques comunes basados en la web.
CPE cpe:2.3:a:hcltech:aion:2.0:*:*:*:*:*:*:* cpe:2.3:a:hcltech:aion:2.0.0:*:*:*:*:*:*:*

30 Jan 2026, 16:26

Type Values Removed Values Added
CPE cpe:2.3:a:hcltech:aion:2.0:*:*:*:*:*:*:*
References () https://support.hcl-software.com/kb_view.do?sys_kb_id=4b92474633de7ad4159a05273e5c7b4b&searchTerm=kb0127995# - () https://support.hcl-software.com/kb_view.do?sys_kb_id=4b92474633de7ad4159a05273e5c7b4b&searchTerm=kb0127995# - Vendor Advisory
First Time Hcltech aion
Hcltech

19 Jan 2026, 18:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-19 18:16

Updated : 2026-04-25 18:05


NVD link : CVE-2025-55249

Mitre link : CVE-2025-55249

CVE.ORG link : CVE-2025-55249


JSON object : View

Products Affected

hcltech

  • aion
CWE
CWE-693

Protection Mechanism Failure