HCL AION is affected by a Permanent Cookie Containing Sensitive Session Information vulnerability. It is storing sensitive session data in persistent cookies may increase the risk of unauthorized access if the cookies are intercepted or compromised. This issue affects AION: 2.0.
Metrics
Affected Vendors & Products
References
History
Wed, 04 Feb 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech aion |
|
| Vendors & Products |
Hcltech
Hcltech aion |
Tue, 03 Feb 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 03 Feb 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL AION is affected by a Permanent Cookie Containing Sensitive Session Information vulnerability. It is storing sensitive session data in persistent cookies may increase the risk of unauthorized access if the cookies are intercepted or compromised. This issue affects AION: 2.0. | |
| Title | HCL AION is susceptible to Missing Content-Security-Policy | |
| Weaknesses | CWE-539 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published: 2026-02-03T18:00:05.175Z
Updated: 2026-02-03T18:55:38.148Z
Reserved: 2025-06-18T14:00:43.106Z
Link: CVE-2025-52633
Updated: 2026-02-03T18:55:30.167Z
Status : Awaiting Analysis
Published: 2026-02-03T19:16:12.827
Modified: 2026-02-04T16:33:44.537
Link: CVE-2025-52633
No data.
ReportizFlow