HCL MyXalytics HTML Injection Vulnerability

Vulnerability

A vulnerability allowing HTML injection has been identified in HCL MyXalytics version 6.6. This issue arises when untrusted input is output without proper sanitization, potentially enabling unauthorized content injection and manipulation.

Impact

Exploitation of this vulnerability could lead to HTML injection, allowing attackers to inject malicious HTML that could be executed in the user's browser.

Remediation

Users can upgrade to HCL MyXalytics version 6.7, which addresses this vulnerability. For assistance with the upgrade, contact the HCL MyXalytics support team.

Added: Oct 3, 2025, 7:27 PM
Updated: Oct 3, 2025, 7:27 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.7
exploitability
6.4
remediation
7.7
relevance
0.6
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.