CVE-2025-59854
LOW
NVD
CVSS Score
3.1
Severity
LOW
Published
May 06, 2026
Vendor
unknown
Description
HCL DFXAnalytics is affected by an Insecure Security Header Configuration vulnerability where the application utilizes the outdated X-XSS-Protection header, which could allow an attacker to exploit browser-specific rendering flaws or bypass security controls that should instead be managed by a robust Content Security Policy (CSP).