Unrated severityNVD Advisory· Published Aug 15, 2025· Updated Aug 18, 2025
HCL BigFix SaaS Authentication Service is affected by a Cross-Site Scripting (XSS) vulnerability
CVE-2025-52620
Description
HCL BigFix SaaS Authentication Service is affected by a Cross-Site Scripting (XSS) vulnerability. The image upload functionality inadequately validated the submitted image format.
Affected products
2- HCL Software/BigFix SaaS Remediatev5Range: < 8.1.14
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.