CVEs classified under CWE-1032, newest first.
1 CVERSS
CVE-2026-21833
HCL AION is affected by a vulnerability in which the Content-Security-Policy (CSP) HTTP response header is not configured. CSP helps prevent attacks such as Cross-Site Scripting (XSS) by restricting the sources from which scripts, styles…