LIVE · cybersecurity feed
Live wire
cve recordmedium

CVE-2025-52638

hcl · aion

Published
CVSS5.6
Severitymedium
WeaknessCWE-345
ExploitedNot in CISA KEV

CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:H/A:H

Description

HCL AION is affected by a vulnerability where generated containers may execute binaries with root-level privileges. Running containers with root privileges may increase the potential security risk, as it grants elevated permissions within the container environment. Aligning container configurations with security best practices requires minimizing privileges and avoiding root-level execution wherever possible.

References

← Back to the CVE Tracker

Our coverage of CVE-2025-52638

No stories yet. This page updates automatically when we publish reporting that references CVE-2025-52638.