HCL AION is affected by a Permanent Cookie Containing Sensitive Session Information vulnerability. It is storing sensitive session data in persistent cookies may increase the risk of unauthorized access if the cookies are intercepted or compromised. This issue affects AION: 2.0.
Metrics
Affected Vendors & Products
References
History
Tue, 03 Feb 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 03 Feb 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL AION is affected by a Permanent Cookie Containing Sensitive Session Information vulnerability. It is storing sensitive session data in persistent cookies may increase the risk of unauthorized access if the cookies are intercepted or compromised. This issue affects AION: 2.0. | |
| Title | HCL AION is susceptible to Missing Content-Security-Policy | |
| Weaknesses | CWE-539 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2026-02-03T18:55:38.148Z
Reserved: 2025-06-18T14:00:43.106Z
Link: CVE-2025-52633
Updated: 2026-02-03T18:55:30.167Z
Status : Received
Published: 2026-02-03T19:16:12.827
Modified: 2026-02-03T19:16:12.827
Link: CVE-2025-52633
No data.
OpenCVE Enrichment
No data.