CVE-2025-62309: Hcl Aion

Low severity, CVSS 2.6. EPSS: 0.1% chance of exploitation in the next 30 days.

HCL AION is affected by a vulnerability where auto-complete functionality is enabled for certain input fields. This may allow sensitive information to be stored in the browser, potentially leading to unintended exposure under specific conditions.

Affected products

  • Hcl Aion: version 2.1.0 only

Published 2026-05-14. Last modified 2026-10-07.