VYPR
Unrated severityNVD Advisory· Published Aug 15, 2025· Updated Aug 18, 2025

HCL BigFix SaaS Authentication Service is affected by a Cross-Site Scripting (XSS) vulnerability

CVE-2025-52620

Description

HCL BigFix SaaS Authentication Service is affected by a Cross-Site Scripting (XSS) vulnerability. The image upload functionality inadequately validated the submitted image format.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.