CVE Vulnerabilities

CVE-2025-52625

Use of Web Browser Cache Containing Sensitive Information

Published: Oct 10, 2025 | Modified: Oct 10, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A vulnerability 

Cacheable SSL Page Found vulnerability has been identified

in HCL AION. 

Cached data may expose credentials, system identifiers, or internal file paths to attackers with access to the device or browser

This issue affects AION: 2.0.

Weakness

The web application does not use an appropriate caching policy that specifies the extent to which each web page and associated form fields should be cached.

Potential Mitigations

References