{"schema_version":1,"title":"HCL AION vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 9 vulnerabilities in HCL AION: 0 in the last 7 days and 0 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2025-62317, was published on 14 May 2026.","url":"https://junglewise.ai/threats/technologies/aion","json_url":"https://junglewise.ai/threats/technologies/aion.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/aion","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":0,"all_time":9,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":0,"last_365_days":9},"latest":[{"cve":"CVE-2025-62317","cvss":2.6,"slug":"cve-2025-62317-hcl-aion-sensitive-information-disclosure-in-url-parameters","title":"HCL AION sensitive information disclosure in URL parameters","severity":"low","exploited":false,"published_at":"2026-05-14T17:16:19.107+00:00","url":"https://junglewise.ai/threats/cve-2025-62317-hcl-aion-sensitive-information-disclosure-in-url-parameters"},{"cve":"CVE-2025-62316","cvss":2.3,"slug":"cve-2025-62316-hcl-aion-missing-security-headers","title":"HCL AION missing security headers","severity":"low","exploited":false,"published_at":"2026-05-14T17:16:18.957+00:00","url":"https://junglewise.ai/threats/cve-2025-62316-hcl-aion-missing-security-headers"},{"cve":"CVE-2025-62313","cvss":5.4,"slug":"cve-2025-62313-hcl-aion-improper-restriction-of-authentication-attempts","title":"HCL AION improper restriction of authentication attempts","severity":"medium","exploited":false,"published_at":"2026-05-14T17:16:18.66+00:00","url":"https://junglewise.ai/threats/cve-2025-62313-hcl-aion-improper-restriction-of-authentication-attempts"},{"cve":"CVE-2025-62312","cvss":3,"slug":"cve-2025-62312-hcl-aion-insufficiently-protected-credentials-in-authentication","title":"HCL AION insufficiently protected credentials in authentication mechanism","severity":"low","exploited":false,"published_at":"2026-05-14T17:16:18.48+00:00","url":"https://junglewise.ai/threats/cve-2025-62312-hcl-aion-insufficiently-protected-credentials-in-authentication"},{"cve":"CVE-2025-62311","cvss":4.3,"slug":"cve-2025-62311-hcl-aion-cleartext-transmission-of-sensitive-information","title":"HCL AION cleartext transmission of sensitive information","severity":"medium","exploited":false,"published_at":"2026-05-14T17:16:18.337+00:00","url":"https://junglewise.ai/threats/cve-2025-62311-hcl-aion-cleartext-transmission-of-sensitive-information"},{"cve":"CVE-2025-62310","cvss":5.4,"slug":"cve-2025-62310-hcl-aion-cleartext-transmission-of-sensitive-information","title":"HCL AION cleartext transmission of sensitive information","severity":"medium","exploited":false,"published_at":"2026-05-14T17:16:18.19+00:00","url":"https://junglewise.ai/threats/cve-2025-62310-hcl-aion-cleartext-transmission-of-sensitive-information"},{"cve":"CVE-2025-62309","cvss":2.6,"slug":"cve-2025-62309-hcl-aion-sensitive-information-disclosure-via-browser","title":"HCL AION sensitive information disclosure via browser autocomplete","severity":"low","exploited":false,"published_at":"2026-05-14T17:16:18.047+00:00","url":"https://junglewise.ai/threats/cve-2025-62309-hcl-aion-sensitive-information-disclosure-via-browser"},{"cve":"CVE-2025-62308","cvss":5.1,"slug":"cve-2025-62308-hcl-aion-sensitive-information-disclosure-in-backend","title":"HCL AION sensitive information disclosure in backend infrastructure","severity":"medium","exploited":false,"published_at":"2026-05-14T17:16:17.913+00:00","url":"https://junglewise.ai/threats/cve-2025-62308-hcl-aion-sensitive-information-disclosure-in-backend"},{"cve":"CVE-2025-62305","cvss":5.1,"slug":"cve-2025-62305-hcl-aion-sensitive-information-disclosure-via-out-of-band","title":"HCL AION sensitive information disclosure via out-of-band interactions","severity":"medium","exploited":false,"published_at":"2026-05-14T17:16:16.307+00:00","url":"https://junglewise.ai/threats/cve-2025-62305-hcl-aion-sensitive-information-disclosure-via-out-of-band"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"HCL BigFix Quantum Risk Analyzer","slug":"bigfix-quantum-risk-analyzer","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/bigfix-quantum-risk-analyzer"},{"name":"HCL Digital Experience Compose","slug":"digital-experience-compose","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/digital-experience-compose"},{"name":"HCL MyXalytics","slug":"myxalytics","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/myxalytics"}],"technology":{"hub":true,"name":"HCL AION","slug":"aion","vendor":{"name":"HCL","slug":"hcl","url":"https://junglewise.ai/threats/vendors/hcl"},"aliases":[],"category":"software-suite","homepage":"https://www.hcltechsw.com/aion","description":"An artificial intelligence and machine learning platform designed for enterprise data science and model management.","url":"https://junglewise.ai/threats/technologies/aion"},"most_severe":[{"cve":"CVE-2025-62313","cvss":5.4,"slug":"cve-2025-62313-hcl-aion-improper-restriction-of-authentication-attempts","title":"HCL AION improper restriction of authentication attempts","severity":"medium","exploited":false,"published_at":"2026-05-14T17:16:18.66+00:00","url":"https://junglewise.ai/threats/cve-2025-62313-hcl-aion-improper-restriction-of-authentication-attempts"},{"cve":"CVE-2025-62310","cvss":5.4,"slug":"cve-2025-62310-hcl-aion-cleartext-transmission-of-sensitive-information","title":"HCL AION cleartext transmission of sensitive information","severity":"medium","exploited":false,"published_at":"2026-05-14T17:16:18.19+00:00","url":"https://junglewise.ai/threats/cve-2025-62310-hcl-aion-cleartext-transmission-of-sensitive-information"},{"cve":"CVE-2025-62308","cvss":5.1,"slug":"cve-2025-62308-hcl-aion-sensitive-information-disclosure-in-backend","title":"HCL AION sensitive information disclosure in backend infrastructure","severity":"medium","exploited":false,"published_at":"2026-05-14T17:16:17.913+00:00","url":"https://junglewise.ai/threats/cve-2025-62308-hcl-aion-sensitive-information-disclosure-in-backend"},{"cve":"CVE-2025-62305","cvss":5.1,"slug":"cve-2025-62305-hcl-aion-sensitive-information-disclosure-via-out-of-band","title":"HCL AION sensitive information disclosure via out-of-band interactions","severity":"medium","exploited":false,"published_at":"2026-05-14T17:16:16.307+00:00","url":"https://junglewise.ai/threats/cve-2025-62305-hcl-aion-sensitive-information-disclosure-via-out-of-band"},{"cve":"CVE-2025-62311","cvss":4.3,"slug":"cve-2025-62311-hcl-aion-cleartext-transmission-of-sensitive-information","title":"HCL AION cleartext transmission of sensitive information","severity":"medium","exploited":false,"published_at":"2026-05-14T17:16:18.337+00:00","url":"https://junglewise.ai/threats/cve-2025-62311-hcl-aion-cleartext-transmission-of-sensitive-information"},{"cve":"CVE-2025-62312","cvss":3,"slug":"cve-2025-62312-hcl-aion-insufficiently-protected-credentials-in-authentication","title":"HCL AION insufficiently protected credentials in authentication mechanism","severity":"low","exploited":false,"published_at":"2026-05-14T17:16:18.48+00:00","url":"https://junglewise.ai/threats/cve-2025-62312-hcl-aion-insufficiently-protected-credentials-in-authentication"},{"cve":"CVE-2025-62317","cvss":2.6,"slug":"cve-2025-62317-hcl-aion-sensitive-information-disclosure-in-url-parameters","title":"HCL AION sensitive information disclosure in URL parameters","severity":"low","exploited":false,"published_at":"2026-05-14T17:16:19.107+00:00","url":"https://junglewise.ai/threats/cve-2025-62317-hcl-aion-sensitive-information-disclosure-in-url-parameters"},{"cve":"CVE-2025-62309","cvss":2.6,"slug":"cve-2025-62309-hcl-aion-sensitive-information-disclosure-via-browser","title":"HCL AION sensitive information disclosure via browser autocomplete","severity":"low","exploited":false,"published_at":"2026-05-14T17:16:18.047+00:00","url":"https://junglewise.ai/threats/cve-2025-62309-hcl-aion-sensitive-information-disclosure-via-browser"},{"cve":"CVE-2025-62316","cvss":2.3,"slug":"cve-2025-62316-hcl-aion-missing-security-headers","title":"HCL AION missing security headers","severity":"low","exploited":false,"published_at":"2026-05-14T17:16:18.957+00:00","url":"https://junglewise.ai/threats/cve-2025-62316-hcl-aion-missing-security-headers"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}