Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

AION — Vulnerabilities & Security Advisories 45

All 45 CVE vulnerabilities found in AION, with AI-generated Chinese analysis, references, and POCs.

This page aggregates documented security vulnerabilities affecting the AION product, focusing on specific weakness types associated with this tag. The collection encompasses a range of flaws identified in the software, covering the chronological period from the earliest recorded issues to the most recent advisories. The repository compiles various vulnerability classes linked to the AION codebase, including but not limited to memory corruption, input validation errors, and privilege escalation risks. It spans the full historical record of security findings for this product, enabling comprehensive analysis of the security posture over time. Readers can utilize this aggregation to track the vendor’s security advisories and assess the trend in vulnerability disclosures. The page allows users to understand the evolution of specific weakness classes within AION, providing a structured view of the product’s vulnerability history. By consolidating these data points, stakeholders can identify recurring patterns, evaluate the effectiveness of past patches, and anticipate future security requirements for the AION ecosystem. This centralized resource serves as a factual reference for security professionals managing AION deployments, offering clarity on past and present security risks without requiring cross-referencing multiple external databases.

Vendor: HCL

CVE ID Title CVSS Severity Published
CVE-2025-52629 HCL AION is susceptible to Missing Content-Security-Policy CWE-1032 3.7 Low 2026-02-03
CVE-2025-52626 HCL AION is susceptible to Potential Command Injection vulnerability CWE-78 4.5 Medium 2026-02-03
CVE-2025-52627 HCL AION is susceptible to Incorrect Permission Assignment for Critical Resource CWE-732 5.5 Medium 2026-02-03
CVE-2025-55252 HCL AION is affected by a Weak Password Policy vulnerability CWE-521 3.1 Low 2026-01-19
CVE-2025-55250 HCL AION is affected by a Technical Error Disclosure vulnerability CWE-209 1.8 Low 2026-01-19
CVE-2025-52661 HCL AION 安全漏洞 CWE-613 2.4 Low 2026-01-19
CVE-2025-55249 HCL AION is affected by a Missing Security Response Headers vulnerability. CWE-693 3.5 Low 2026-01-19
CVE-2025-52659 HCL AION is affected by a Cacheable HTTP Response vulnerability CWE-525 2.8 Low 2026-01-19
CVE-2025-52660 HCL AION is affected by an Host Header Injection vulnerability CWE-644 2.7 Low 2026-01-19
CVE-2025-55251 HCL AION is affected by an Unrestricted File Upload vulnerability CWE-434 3.1 Low 2026-01-19
CVE-2025-52625 HCL AION is susceptible to Cacheable SSL Page Found vulnerability CWE-525 3.7 Low 2025-10-10
CVE-2025-52624 HCL AION is susceptible to Bypass of the script allow list configuration vulnerability CWE-1032 5.4 Medium 2025-10-10
CVE-2025-52635 HCL AION is susceptible to Trusted types in scripts not enforced in CSP CWE-1032 3.7 Low 2025-10-10
CVE-2025-52632 HCL AION is susceptible to Missing Secure Attribute in Encrypted Session (SSL) Cookie vulnerability CWE-614 6.5 Medium 2025-10-10
CVE-2025-52630 HCL AION is susceptible to Missing or insecure "X-Content-Type-Options" header vulnerability CWE-200 3.7 Low 2025-10-10

All 45 known CVE vulnerabilities affecting AION with full Chinese analysis, references, and POCs where available.