PT-2025-41535 · Hcl · Hcl Myxalytics

Published

2025-10-10

·

Updated

2025-10-10

·

CVE-2025-52655

CVSS v3.1

3.1

Low

VectorAV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions HCL MyXalytics version 6.6
Description The software contains a flaw related to the inclusion of functionality from an untrusted control sphere. Specifically, the application allows loading third-party scripts without proper integrity checks or validation. This can enable external code to run within the application's context, potentially leading to data exposure.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2025-52655

Affected Products

Hcl Myxalytics