CVE-2025-62326: Hcltech Digital Experience

Medium severity, CVSS 4.8. EPSS: 0.2% chance of exploitation in the next 30 days.

HCL Digital Experience is susceptible to stored cross-site scripting (XSS) in the administrative user interface which would require elevated privileges to exploit.

Affected products

  • Hcltech Digital Experience: version 9.5 only

Published 2026-02-20. Last modified 2026-06-17.