HCL AION Out-of-Band Information Disclosure Vulnerability

Vulnerability

A vulnerability in HCL AION v2.1.0 allows certain operations to trigger out-of-band interactions, potentially leading to the unintended disclosure of sensitive information. This behavior may expose data to external systems under specific conditions.

Impact

Exploitation of this vulnerability could result in the unauthorized disclosure of sensitive information to external systems.

Remediation

Users can upgrade to HCL AION v2.5.0, which addresses this vulnerability. For assistance with the upgrade process, contact the HCL AION support team.

Added: May 14, 2026, 5:50 PM
Updated: May 14, 2026, 5:50 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
5.2
remediation
0.0
relevance
8.3
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.