CVE-2025-59853

LOW

HCL DFXAnalytics is affected by an Improper Error Handling vulnerability

Title source: cna
STIX 2.1

Description

HCL DFXAnalytics is affected by an Improper Error Handling vulnerability where the application exposes detailed stack traces in responses, which could allow an attacker to gain insights into the application's internal structure, code logic, and environment configurations.

Scores

CVSS v3 3.1
EPSS 0.0003
EPSS Percentile 9.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-209
Status published
Products (2)
HCL/DFXAnalytics 3.1 and below
hcltech/dfxanalytics < 4.1
Published May 06, 2026
Tracked Since May 06, 2026