CVE-2025-52613: Hcltech Bigfix Service Management

High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.

HCL BigFix Service Management (SM) is affected by use of a vulnerable WSGI Server was identified. Deploying an outdated or insecure WSGI server may expose the application to known security weaknesses, potentially increasing the risk of exploitation and unauthorized access.

Affected products

  • Hcltech Bigfix Service Management: version 23.0 only

Published 2026-05-06. Last modified 2026-10-07.