HCL MyXalytics Mass Assignment Vulnerability

Vulnerability

A mass assignment vulnerability has been identified in HCL MyXalytics version 6.6. This vulnerability allows user input to be automatically bound to application objects without adequate validation or access controls. As a result, it could enable unauthorized modifications of sensitive fields.

Impact

Exploitation of this vulnerability could lead to unauthorized changes in sensitive application data.

Remediation

Users can upgrade to HCL MyXalytics version 6.7, which addresses this vulnerability. For assistance with the upgrade process, contact the HCL MyXalytics support team.

Added: Oct 3, 2025, 7:27 PM
Updated: Oct 3, 2025, 7:27 PM

Vulnerability Rating

Custom Algorithm
spread
0.8
impact
2.5
exploitability
7.4
remediation
7.7
relevance
0.6
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.