Security Advisory

CVE-2025-59854

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-06 10:27:08
Last updated 2026-05-06 12:04:16
Assigner HCL
CVSS score 3.1
State PUBLISHED

Description

HCL DFXAnalytics is affected by an Insecure Security Header Configuration vulnerability where the application utilizes the outdated X-XSS-Protection header, which could allow an attacker to exploit browser-specific rendering flaws or bypass security controls that should instead be managed by a robust Content Security Policy (CSP).