Protection Mechanism Failure
CVE-2025-55249
Summary
HCL AION is affected by a Missing Security Response Headers vulnerability. The absence of standard security headers may weaken the application’s overall security posture and increase its susceptibility to common web-based attacks.
- LOW
- NETWORK
- NONE
- UNCHANGED
- REQUIRED
- LOW
- NONE
- LOW
CWE-693 - Protection Mechanism Failure
The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
References
Advisory Timeline
- Published