
CVE-2025-62328 HCL Nomad server on Domino did not configure the frame-ancestors directive in the Content-Security-Policy header by default which could allow an attacker to obtain se… https://www.cve.org/CVERecord?id=CVE-2025-62328
Post summary
The CVE-2025-62328 entry highlights a missing frame-ancestors CSP directive in HCL Nomad on Domino, potentially allowing attackers to capture sensitive session information.
