HCL MyXalytics Cross-Site Scripting Vulnerability

Vulnerability

A cross-site scripting vulnerability has been identified in HCL MyXalytics version 6.6. This issue allows the execution of unauthorized scripts within the web application, potentially leading to unauthorized actions or access.

Impact

Exploitation of this vulnerability could allow for cross-site scripting, enabling the execution of malicious scripts in the context of the user's session.

Remediation

Users can upgrade to HCL MyXalytics version 6.7, which addresses this vulnerability. For assistance with the upgrade, contact the HCL MyXalytics support team.

Added: Oct 3, 2025, 6:17 PM
Updated: Oct 3, 2025, 6:17 PM

Vulnerability Rating

Custom Algorithm
spread
0.8
impact
1.7
exploitability
5.0
remediation
7.7
relevance
0.6
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.