CVE-2025-52655: Hcl Myxalytics

Low severity, CVSS 3.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Inclusion of Functionality from Untrusted Control Sphere vulnerability in HCL MyXalytics. v6.6 allows Loading third-party scripts without integrity checks or validation can allow external code run in the application's context, risking data exposure.

Affected products

  • Hcl Hcl Myxalytics: version 6.6 only

Published 2025-10-10. Last modified 2026-10-08.