CVE-2025-52654: Hcltech Dryice Myxalytics
Medium severity, CVSS 4.6. EPSS: 0.2% chance of exploitation in the next 30 days.
HCL MyXalytics v6.6 is affected by an HTML Injection. This issue occurs when untrusted input is included in the output without proper handling, potentially allowing unauthorized content injection and manipulation.
Affected products
- Hcltech Dryice Myxalytics: version 6.6 only
Published 2025-10-03. Last modified 2026-10-08.