CVE-2025-62317EPSS p1.4%

CVE-2025-62317CVE-2025-62317

Description

HCL AION is affected by a vulnerability where sensitive information may be included in URL parameters. Passing sensitive data in URLs may expose it through browser history, logs, or intermediary systems, potentially leading to unintended information disclosure under certain conditions.

Scoring

CVSS 2.6 ()
VectorCVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:C/C:L/I:N/A:N
EPSS0.11% probability of exploitation · percentile 1.4% · 2026-10-05T12:00:23Z
Last modified2026-09-30
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.