---
id: CVE-2025-62308
title: >-
  HCL AION is affected by a vulnerability where sensitive backend infrastructure
  details may be exposed
summary: >-
  HCL AION is affected by a vulnerability where sensitive backend infrastructure
  details may be exposed. Exposure of such information could reveal internal
  system architecture or configuration details, which may potentially assist in
  furth…
severity: medium
cvss: 5.1
cvssVector: 'CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:L'
cwe:
  - CWE-201
published: '2026-05-14'
updated: '2026-09-30'
sourceUpdated: '2026-09-30T21:10:00.190'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-62308'
references:
  - url: >-
      https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0130636
    label: psirt@hcl.com
tags:
  - nvd
epss: 0.00109
epssPercentile: 0.01125
ingestedAt: '2026-09-30T21:25:07.726Z'
---

## Overview

HCL AION is affected by a vulnerability where sensitive backend infrastructure details may be exposed. Exposure of such information could reveal internal system architecture or configuration details, which may potentially assist in further analysis or targeted actions under certain conditions

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
