CVE-2025-62328

HCL Nomad server on Domino did not configure the frame-ancestors directive in the Content-Security-Policy header by default which could allow an attacker to obtain sensitive information via unspecified vectors.
Configurations

No configuration.

History

17 Jun 2026, 09:51

Type Values Removed Values Added
Summary
  • (es) El servidor HCL Nomad en Domino no configuró la directiva frame-ancestors en el encabezado Content-Security-Policy por defecto, lo que podría permitir a un atacante obtener información sensible a través de vectores no especificados.

11 Mar 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-11 22:16

Updated : 2026-06-17 09:51


NVD link : CVE-2025-62328

Mitre link : CVE-2025-62328

CVE.ORG link : CVE-2025-62328


JSON object : View

Products Affected

No product.

CWE
CWE-1021

Improper Restriction of Rendered UI Layers or Frames