CVE-2025-52620

Publication date

2025-08-15 22:47:49

Family

HCL

State

PUBLISHED

Description

HCL BigFix SaaS Authentication Service is affected by a Cross-Site Scripting (XSS) vulnerability. The image upload functionality inadequately validated the submitted image format.