Junglewise Threat Intelligence

CVE-2025-52651: HCL MyXalytics input validation vulnerability

CVE-2025-52651 · Severity: low · CVSS 3.5 · Published 2026-09-07

Technologies: HCL MyXalytics. Vendors: HCL.

Executive brief

HCL MyXalytics is an analytics and insights platform used by enterprises to monitor and analyze business data. An input validation flaw allows attackers to send malformed data that could cause unexpected system behavior or trigger security issues, potentially affecting data integrity or availability.

Technical details

This vulnerability is a classic input validation flaw in HCL MyXalytics where insufficient sanitization of user-supplied input allows malicious or unexpected data to reach sensitive processing logic. The exact attack vector and preconditions are not fully detailed in the available advisory text, but the vulnerability class suggests inadequate input boundary checking. An attacker can craft specially-formed input to trigger unintended system behavior. Patches or mitigations should be available from HCL; refer to the support article KB0132828 for remediation guidance.

Affected products

  • HCL MyXalytics

Timeline

  • 2026-09-07: disclosed

References

Related threats