4 vulnerabilities classified as CWE-1032 (OWASP 2017年十大分类A6-安全配置错误). AI Chinese analysis included.
This page provides a comprehensive aggregation of security vulnerabilities categorized under the Common Weakness Enumeration identifier CWE-1032. It serves as a centralized resource for analysts and developers to track instances of this specific software weakness across various ecosystems. The content encompasses a wide array of vulnerability reports sourced from multiple vendors and product lines, ensuring a holistic view of how this weakness manifests in real-world applications. The data collected spans a significant historical period, capturing both recent disclosures and legacy issues to provide context on the evolution and persistence of this weakness over time. By utilizing this resource, users can effectively track vendor-specific advisories related to CWE-1032, allowing for a clearer understanding of mitigation strategies and patch availability. Furthermore, the page facilitates a deeper understanding of the weakness class itself by highlighting common patterns and structural flaws associated with it. Users can also look up individual product vulnerability histories, examining how specific software solutions have been affected and subsequently resolved. This approach supports informed decision-making regarding software procurement, security auditing, and code review processes. The information is presented to aid in identifying systemic risks and prioritizing remediation efforts based on the severity and prevalence of the identified weaknesses. Ultimately, this aggregation aims to streamline the process of managing software security by consolidating fragmented data into a single, accessible reference point for professionals dealing with CWE-1032.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-52629 | HCL AION is susceptible to Missing Content-Security-Policy — AION | 3.7 | Low | 2026-02-03 |
| CVE-2025-52624 | HCL AION is susceptible to Bypass of the script allow list configuration vulnerability — AION | 5.4 | Medium | 2025-10-10 |
| CVE-2025-52635 | HCL AION is susceptible to Trusted types in scripts not enforced in CSP — AION | 3.7 | Low | 2025-10-10 |
| CVE-2025-52650 | HCL AION is susceptible to Inline script execution allowed in CSP vulnerability — HCL AION | 8.2 | High | 2025-10-10 |
Vulnerabilities classified as CWE-1032 (OWASP 2017年十大分类A6-安全配置错误) represent 4 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.