
CVE-2025-31984 HCL BigFix Service Management (SM) is affected by a security misconfiguration due to a missing or insecure “X-Content-Type-Options” header. This could allow browsers… https://www.cve.org/CVERecord?id=CVE-2025-31984
Post summary
The CVE describes a misconfiguration (missing X-Content-Type-Options header) in HCL BigFix Service Management that could affect browsers, with no PoC, exploit, patch, or active exploitation reported.

