Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

AION — Vulnerabilities & Security Advisories 44

All 44 CVE vulnerabilities found in AION, with AI-generated Chinese analysis, references, and POCs.

This page aggregates documented security vulnerabilities affecting the AION product, focusing on specific weakness types associated with this tag. The collection encompasses a range of flaws identified in the software, covering the chronological period from the earliest recorded issues to the most recent advisories. The repository compiles various vulnerability classes linked to the AION codebase, including but not limited to memory corruption, input validation errors, and privilege escalation risks. It spans the full historical record of security findings for this product, enabling comprehensive analysis of the security posture over time. Readers can utilize this aggregation to track the vendor’s security advisories and assess the trend in vulnerability disclosures. The page allows users to understand the evolution of specific weakness classes within AION, providing a structured view of the product’s vulnerability history. By consolidating these data points, stakeholders can identify recurring patterns, evaluate the effectiveness of past patches, and anticipate future security requirements for the AION ecosystem. This centralized resource serves as a factual reference for security professionals managing AION deployments, offering clarity on past and present security risks without requiring cross-referencing multiple external databases.

Vendor: HCL

CVE ID Title CVSS Severity Published
CVE-2026-21832 HCL AION is affected by multiple security vulnerabilities. CWE-1427 4.3 Medium 2026-08-13
CVE-2025-62315 HCL AION is affected by multiple security vulnerabilities. CWE-116 3.4 Low 2026-08-13
CVE-2025-62318 HCL AION is affected by multiple security vulnerabilities. CWE-352 3.7 Low 2026-08-13
CVE-2025-62314 HCL AION is affected by multiple security vulnerabilities. CWE-307 5.6 Medium 2026-08-13
CVE-2025-52640 HCL AION is affected by multiple security vulnerabilities. 4.7 Medium 2026-08-13
CVE-2025-62305 HCL AION is affected by a vulnerability where certain operations may trigger out-of-band interactions CWE-201 5.1 Medium 2026-05-14
CVE-2025-62317 HCL AION is affected by a vulnerability where sensitive information may be included in URL parameters. CWE-598 2.6 Low 2026-05-14
CVE-2025-62308 HCL AION is affected by a vulnerability where sensitive backend infrastructure details may be exposed CWE-201 5.1 Medium 2026-05-14
CVE-2025-62309 HCL AION is affected by a vulnerability where auto-complete functionality is enabled for certain input fields. CWE-201 2.6 Low 2026-05-14
CVE-2025-62312 HCL AION is affected by a vulnerability where basic authorization tokens are used for authentication CWE-522 3.0 Low 2026-05-14
CVE-2025-62316 HCL AION is affected by a vulnerability where certain security-related HTTP response headers are not properly configured CWE-1021 2.3 Low 2026-05-14
CVE-2025-62313 HCL AION is affected by a vulnerability where adequate protections against brute-force attempts are not enforced. CWE-307 5.4 Medium 2026-05-14
CVE-2025-62311 HCL AION is affected by a vulnerability where backend service details may be transmitted over insecure HTTP channels. CWE-319 4.3 Medium 2026-05-14
CVE-2025-62310 HCL AION is affected by a vulnerability where encryption is not enforced for certain data transmissions or operations CWE-319 5.4 Medium 2026-05-14
CVE-2025-52641 Internal Filesystem Exploration vulnerability 2.9 Low 2026-04-15
CVE-2025-52642 HCL AION is affected by an internal filesystem paths disloser vulnerability 3.3 Low 2026-03-16
CVE-2025-52646 HCL AION is affected by a vulnerability where certain offering configurations may permit execution of potentially harmful SQL queries. 2.2 Low 2026-03-16
CVE-2025-52645 HCL AION is affected by a vulnerability where model packaging and distribution mechanisms may not include sufficient authenticity verification. 1.9 Low 2026-03-16
CVE-2025-52649 HCL AION is affected by a vulnerability where certain identifiers may be predictable in nature 1.8 Low 2026-03-16
CVE-2025-52644 HCL AION is affected by a vulnerability where certain user actions are not adequately audited or logged. 5.8 Medium 2026-03-16
CVE-2025-52643 HCL AION is affected by a vulnerability where untrusted file parsing operations are not executed within a properly isolated sandbox environment 4.7 Medium 2026-03-16
CVE-2025-52636 HCL AION is affected by a improper handling of uploads files Size 1.8 Low 2026-03-16
CVE-2025-52648 HCL AION 安全漏洞 4.8 Medium 2026-03-16
CVE-2025-52638 Multiple security vulnerabilities affect HCL AION 5.6 Medium 2026-03-16
CVE-2025-52637 Multiple security vulnerabilities affect HCL AION 4.5 Medium 2026-03-16
CVE-2025-52631 HCL AION is affected by a Missing or Insecure HTTP Strict-Transport-Security (HSTS) Header vulnerability. CWE-200 3.7 Low 2026-02-03
CVE-2025-52623 HCL AION is affected by an Autocomplete HTML Attribute Not Disabled for Password Field vulnerability CWE-522 3.7 Low 2026-02-03
CVE-2025-52628 HCL AION is susceptible to Missing SameSite vulnerability CWE-1275 4.6 Medium 2026-02-03
CVE-2025-52633 HCL AION is susceptible to Missing Content-Security-Policy CWE-539 3.1 Low 2026-02-03
CVE-2025-52629 HCL AION is susceptible to Missing Content-Security-Policy CWE-1032 3.7 Low 2026-02-03

All 44 known CVE vulnerabilities affecting AION with full Chinese analysis, references, and POCs where available.