CVE-2025-62328
HCL Nomad server on Domino is affected by a missing default frame-ancestors directive
CVSS Score
3.7
EPSS Score
0.0%
EPSS Percentile
0th
HCL Nomad server on Domino did not configure the frame-ancestors directive in the Content-Security-Policy header by default which could allow an attacker to obtain sensitive information via unspecified vectors.
| CWE | CWE-1021 |
| Vendor | hclsoftware |
| Product | nomad server on domino |
| Published | Mar 11, 2026 |
| Last Updated | Mar 12, 2026 |
Stay Ahead of the Next One
Get instant alerts for hclsoftware nomad server on domino
Be the first to know when new low vulnerabilities affecting hclsoftware nomad server on domino are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
None
Availability
None
Affected Versions
HCLSoftware / Nomad server on Domino
<1.0.19