CVE-2024-42172: Hcltech Dryice Myxalytics

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

HCL MyXalytics is affected by broken authentication. It allows attackers to compromise keys, passwords, and session tokens, potentially leading to identity theft and system control. This vulnerability arises from poor configuration, logic errors, or software bugs and can affect any application with access control, including databases, network infrastructure, and web applications.

Affected products

  • Hcltech Dryice Myxalytics: version 6.3 only

Published 2025-01-11. Last modified 2026-06-17.