CVE-2025-0254: Hcl Software Hcl Digital Experience

Medium severity, CVSS 5.9. EPSS: 0.3% chance of exploitation in the next 30 days.

HCL Digital Experience components Ring API and dxclient may be vulnerable to man-in-the-middle (MitM) attacks prior to 9.5 CF226. An attacker could intercept and potentially alter communication between two parties.

Affected products

Published 2025-03-20. Last modified 2026-06-17.