CVE-2025-52656

HIGH

HCL MyXalytics: 6.6 - Info Disclosure

Title source: llm
STIX 2.1

Description

HCL MyXalytics: 6.6.  is affected by Mass Assignment vulnerability. Mass Assignment occurs when user input is automatically bound to application objects without proper validation or access controls, potentially allowing unauthorized modification of sensitive fields.

Scores

CVSS v3 7.6
EPSS 0.0014
EPSS Percentile 33.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-915
Status published
Products (1)
hcltech/dryice_myxalytics 6.6
Published Oct 03, 2025
Tracked Since Feb 18, 2026