CVE Vulnerabilities

CVE-2025-52658

Use of Unmaintained Third Party Components

Published: Oct 03, 2025 | Modified: Oct 10, 2025
CVSS 3.x
4.8
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

HCL MyXalytics is affected by the use of vulnerable/outdated versions which can expose the application to known security risks that could be exploited.

Weakness

The product relies on third-party components that are not actively supported or maintained by the original developer or a trusted proxy for the original developer.

Affected Software

Name Vendor Start Version End Version
Dryice_myxalytics Hcltech 6.6 (including) 6.6 (including)

Extended Description

Reliance on components that are no longer maintained can make it difficult or impossible to fix significant bugs, vulnerabilities, or quality issues. In effect, unmaintained code can become obsolete. This issue makes it more difficult to maintain the product, which indirectly affects security by making it more difficult or time-consuming to find and/or fix vulnerabilities. It also might make it easier to introduce vulnerabilities.

References