HCL MyXalytics is affected by improper management of a static JWT signing secret in the web application, where the secret lacks rotation , introducing a security risk
| Software | From | Fixed in |
|---|---|---|
| hcltech / myxalytics | 6.2 | 6.2.x |
| hcltech / myxalytics | 6.3 | 6.3.x |
| hcltech / myxalytics | 6.4 | 6.4.x |
| hcltech / myxalytics | 6.5 | 6.5.x |
| hcltech / myxalytics | 6.6 | 6.6.x |
| hcltech / myxalytics | 6.7 | 6.7.x |