CVE 3.7 LOW

HCL AION is affected by an Autocomplete HTML Attribute Not Disabled for Password Field vulnerability_CVE-2025-52623

3.7 / 10
LOW
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:L

Description

HCL AION is affected by an Autocomplete HTML Attribute Not Disabled for Password Field vulnerability. This can allow autocomplete on password fields may lead to unintended storage or disclosure of sensitive credentials, potentially increasing the risk of unauthorized access. This issue affects AION: 2.0.

Basic Information

ID CVE-2025-52623
Source HCL
Published Feb 3, 2026 at 18:12
Modified Feb 3, 2026 at 19:18

Affected Product

Vendor HCL
Product AION
Version 2.0
Affected Versions HCL AION 2.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.