Unrated severityNVD Advisory· Published Mar 11, 2026· Updated Mar 12, 2026
HCL Nomad server on Domino is affected by a missing default frame-ancestors directive
CVE-2025-62328
Description
HCL Nomad server on Domino did not configure the frame-ancestors directive in the Content-Security-Policy header by default which could allow an attacker to obtain sensitive information via unspecified vectors.
Affected products
2- HCLSoftware/Nomad server on Dominov5Range: <1.0.19
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.