---
id: CVE-2025-59853
title: >-
  HCL DFXAnalytics is affected by an Improper Error Handling vulnerability where
  the application exposes detailed stack traces in responses, which could allow
  an attacker to gain insights into the application's internal structure, code
  log…
summary: >-
  HCL DFXAnalytics is affected by an Improper Error Handling vulnerability where
  the application exposes detailed stack traces in responses, which could allow
  an attacker to gain insights into the application's internal structure, code
  log…
severity: low
cvss: 3.1
cvssVector: 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N'
cwe:
  - CWE-209
vendor: hcltech
product: dfxanalytics
affected:
  - dfxanalytics < 4.1
patched:
  - dfxanalytics 4.1
published: '2026-05-06'
updated: '2026-09-30'
sourceUpdated: '2026-09-30T22:10:00.273'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-59853'
references:
  - url: >-
      https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0130569
    label: psirt@hcl.com
tags:
  - nvd
epss: 0.00166
epssPercentile: 0.05309
ingestedAt: '2026-09-30T22:27:27.779Z'
---

## Overview

HCL DFXAnalytics is affected by an Improper Error Handling vulnerability where the application exposes detailed stack traces in responses, which could allow an attacker to gain insights into the application's internal structure, code logic, and environment configurations.

## Affected

- `dfxanalytics < 4.1`

## Remediation

Upgrade past the affected range:

- `dfxanalytics 4.1`
