Medium severity4.6NVD Advisory· Published Oct 12, 2025· Updated Apr 15, 2026
CVE-2025-31992
CVE-2025-31992
Description
HCL Unica MaxAI Assistant is susceptible to a HTML injection vulnerability. An attacker could insert special characters that are processed client-side in the context of the user's session.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.