HCL AION Encryption Vulnerability Allowing Interception of Sensitive Data

Vulnerability

A vulnerability exists in HCL AION v2.1.0 where encryption is not properly enforced for certain data transmissions or operations. This lack of encryption may expose sensitive information to interception or unauthorized access under specific conditions.

Impact

The vulnerability could lead to unauthorized interception or access to sensitive information during transmission.

Remediation

Users can upgrade to HCL AION v2.5.0, which addresses this vulnerability. For assistance with the upgrade, contact the HCL AION support team.

Added: May 14, 2026, 5:49 PM
Updated: May 14, 2026, 5:49 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
4.2
remediation
0.0
relevance
8.3
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.