HomeHcltechCVE-2025-52661

CVE-2025-52661

LOW
2.4CVSS
Published: 2026-01-19
Updated: 2026-01-30
AI Analysis

Description

HCL AION version 2 is affected by a JWT Token Expiry Too Long vulnerability. This may increase the risk of token misuse, potentially resulting in unauthorized access if the token is compromised.

CVSS Metrics

Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N
Attack Vector
network
Complexity
low
Privileges
high
User Action
required
Scope
unchanged
Confidentiality
none
Integrity
low
Availability
none
Weaknesses
CWE-613

Metadata

Primary Vendor
HCLTECH
Published
1/19/2026
Last Modified
1/30/2026
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

hcltech : aion

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2025-52661 | LOW Severity | CVEDatabase.com | CVEDatabase.com