CVE-2025-59852CRITICAL 9.1EPSS p0.5%

CVE-2025-59852CVE-2025-59852

Description

HCL DFXAnalytics is affected by an Insufficient Transport Layer Protection vulnerability where data is transmitted over the network without encryption, which could allow an attacker to compromise the confidentiality, integrity, and authentication of sensitive information.

Scoring

CVSS 3.19.1 (CRITICAL)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
EPSS0.09% probability of exploitation · percentile 0.5% · 2026-06-18T12:00:27Z
Published2026-05-06
Last modified2026-05-07

Underlying weaknesses· 1

CWE-319

References

  1. https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0130569

1

TypeTargetConfidenceTier
WeaknessCleartext Transmission of Sensitive Informationcwe-3190%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2025-59851
CVE
CVE-2025-55261
CVE
CVE-2025-62338
CVE
CVE-2025-55278
CVE
CVE-2025-52609
CVE
CVE-2025-55269
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.