CVE-2025-62309EPSS p1.4%

CVE-2025-62309CVE-2025-62309

Description

HCL AION is affected by a vulnerability where auto-complete functionality is enabled for certain input fields. This may allow sensitive information to be stored in the browser, potentially leading to unintended exposure under specific conditions.

Scoring

CVSS 2.6 ()
VectorCVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:C/C:L/I:N/A:N
EPSS0.11% probability of exploitation · percentile 1.4% · 2026-10-05T12:00:23Z
Last modified2026-09-30
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.