{"id":"CVE-2025-52625","title":"A vulnerability \n\nCacheable SSL Page Found vulnerability has been identified\n\n in HCL AION. \n\nCached data may expose credentials, system identifiers, or internal file paths to attackers with access to the device or browser\n\nThis issue af…","summary":"A vulnerability \n\nCacheable SSL Page Found vulnerability has been identified\n\n in HCL AION. \n\nCached data may expose credentials, system identifiers, or internal file paths to attackers with access to the device or browser\n\nThis issue af…","severity":"low","cvss":3.7,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","cwe":["CWE-525"],"vendor":"hcltech","product":"aion","affected":["aion = 2.0.0"],"published":"2025-10-10","updated":"2026-10-08","sourceUpdated":"2026-10-08T13:10:00.200","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-52625","references":[{"url":"https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0124444","label":"psirt@hcl.com"}],"tags":["nvd"],"epss":0.00237,"epssPercentile":0.13507,"ingestedAt":"2026-10-08T13:42:55.081Z","slug":"CVE-2025-52625","body":"## Overview\n\nA vulnerability \n\nCacheable SSL Page Found vulnerability has been identified\n\n in HCL AION. \n\nCached data may expose credentials, system identifiers, or internal file paths to attackers with access to the device or browser\n\nThis issue affects AION: 2.0.\n\n## Affected\n\n- `aion = 2.0.0`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":20,"depthScoreParts":{"impact":20.4,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}