Dfxanalytics
Vendor:
First CVE: May 6, 2026 · Active for under a year
14
Total CVEs
More Total CVEs than 91% of tracked products
14.0
Avg CVEs / Year
Higher CVE frequency than 97% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 40% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Dfxanalytics over time
Volume of CVEsAvg CVSS Base Score
First CVE
May 6, 2026
2 months ago
Most Recent CVE
Jul 16, 2026
8 days ago
CVE Severity & Scoring
Dfxanalytics14 CVEs
43%
29%
21%
All CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network14 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low13 (92.9%)
High1 (7.1%)
Unknown0 (0.0%)
User Interaction
None11 (78.6%)
Unknown0 (0.0%)
Required3 (21.4%)
Privileges Required
Low1 (7.1%)
High0 (0.0%)
None13 (92.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-56453CRITICAL HCL DFXAnalytics is affected by an Account Takeover via Response Manipulation vulnerability. A remote attacker can intercept and alter the contents of the server's HTTP responses b | Jul 16, 2026 | 9.8 | 38 | NO | NO |
CVE-2026-35142HIGH HCL DFXAnalytics is affected by an Internal IP Address Disclosure vulnerability. The application includes internal IP address details within its generated server responses, which c | Jul 16, 2026 | 8.2 | 33 | NO | NO |
CVE-2026-56455HIGH HCL DFXAnalytics is affected by a Buffer Overflow vulnerability that can lead to a Denial of Service (DoS). The application fails to properly validate input sizes, allowing an atta | Jul 16, 2026 | 7.5 | 32 | NO | NO |
CVE-2026-35140HIGH HCL DFXAnalytics is affected by a Missing Secure Attribute in Encrypted Session (SSL) Cookie vulnerability. The application fails to set the "secure" attribute on session cookies g | Jul 16, 2026 | 7.2 | 31 | NO | NO |
CVE-2025-59851CRITICAL HCL DFXAnalytics is affected by a Using Components with Known Vulnerabilities flaw where the application utilizes unpatched libraries or sub-components, which could allow an attack | May 6, 2026 | 9.8 | 31 | NO | NO |
CVE-2026-56454HIGH HCL DFXAnalytics is affected by a Deprecated Protocol vulnerability due to the use of TLS 1.0 and TLS 1.1. These legacy protocols contain numerous cryptographic design flaws that e | Jul 16, 2026 | 7.5 | 30 | NO | NO |
CVE-2025-59852CRITICAL HCL DFXAnalytics is affected by an Insufficient Transport Layer Protection vulnerability where data is transmitted over the network without encryption, which could allow an attac | May 6, 2026 | 9.1 | 30 | NO | NO |
CVE-2026-35143MEDIUM HCL DFXAnalytics is affected by a Missing SameSite Attribute vulnerability. The application fails to set the "SameSite" attribute on session cookies generated during authentication | Jul 16, 2026 | 6.5 | 29 | NO | NO |
CVE-2026-56456MEDIUM HCL DFXAnalytics is affected by an Internal File Path Disclosure vulnerability. The application dashboard inadvertently leaks sensitive information regarding its internal file stru | Jul 16, 2026 | 5.3 | 26 | NO | NO |
CVE-2026-35141MEDIUM HCL DFXAnalytics is affected by a Login Replay Attack vulnerability. The application allows a remote attacker to intercept, delay, or fraudulently retransmit valid authentication d | Jul 16, 2026 | 5.3 | 25 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (14 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (14 CVEs).
Media Mentions
Signals from CVEs in this product scope (14 CVEs).
Top CNAs Publishing CVEs For Dfxanalytics
Top CWEs
Versions
No cataloged versions.