CVE-2025-62328

HCL Nomad server on Domino did not configure the frame-ancestors directive in the Content-Security-Policy header by default which could allow an attacker to obtain sensitive information via unspecified vectors.
Configurations

No configuration.

History

11 Mar 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-11 22:16

Updated : 2026-03-12 21:08


NVD link : CVE-2025-62328

Mitre link : CVE-2025-62328

CVE.ORG link : CVE-2025-62328


JSON object : View

Products Affected

No product.

CWE
CWE-1021

Improper Restriction of Rendered UI Layers or Frames