CVEs we hold for Opentext
Records whose assigning authority named Opentext as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-3278XSS Vulnerability discovered in OpenText™ ZENworks Service Desk.OpenText™ ZENworks Service Desk
CVE-2026-3266Improper access control vulnerability has been discovered in OpenText™ Filr.OpenText™ Filr
CVE-2026-1658Content spoofing vulnerability discovered in OpenText™ Directory ServicesOpenText™ Directory Services
CVE-2026-11878Reflected Cross-Site Scripting vulnerability in OpenText Access ManagerOpenText Access Manager
CVE-2025-9208Stored-XSS vulnerability discovered in OpenText WSM Management Server.OpenText™ Web Site Management Server
CVE-2025-9120RCE vulnerability has been discovered in OpenText™ Carbonite Safe Server Backup.OpenText™ Carbonite Safe Server Backup
CVE-2025-8997OpenText Enterprise Security Manager Information ExposureOpenText Enterprise Security Manager
CVE-2025-8616Malicious browser plugins may cause Authentication replay attack vulnerability to bypass authentication in OpenText…OpenText Advanced Authentication
CVE-2025-8053Insufficient access control vulnerability has been discovered in Opentext Flipper.opentext Flipper
CVE-2025-8051Path traversal validation vulnerability has been discovered in opentext Flipper.opentext Flipper
CVE-2025-8050External Control of File vulnerability has been discovered in opentext Flipper.opentext Flipper
CVE-2025-8049Insufficient Access Control vulnerability has been discovered in OpenText Flipper.opentext Flipper
CVE-2025-8048External Control of File path vulnerability has been discovered on Openext Flipper.opentext Flipper
CVE-2025-5808Authentication Bypass vulnerability discovered in the OpenText™ Self-Service Password ResetOpenText Self Service Password Reset
CVE-2025-3272Incorrect user authorization vulnerability has been identified in Open Text Operations Bridge Manager.OpenText™ Operations Bridge Manager
CVE-2025-2517Reference to Expired Domain Vulnerability in OpenText™ ArcSight Enterprise Security ManagerOpenText ArcSight Enterprise Security Manager
CVE-2025-2236Exposure of Sensitive System Information vulnerability during configuration affecting OpenText Advanced Authentication.OpenText Advanced Authentication
CVE-2025-15579An Insecure Deserialization vulnerability has been discovered in OpenText™ Directory Services.OpenText™ Directory Services
CVE-2025-13672Reflected Cross-Site Scripting discovered in OpenText WSM Management Server.OpenText™ Web Site Management Server
CVE-2025-13671Cross Site request forgery vulnerability discovered in OpenText WSM Management Server.OpenText™ Web Site Management Server
CVE-2025-12455Username Enumeration Observable Response Discrepancy vulnerability has been discovered in OpenText™ Vertica.OpenText™ Vertica
CVE-2025-12454Improper neutralization of input during web page generation vulnerability has been discovered in OpenText™ Vertica.OpenText™ Vertica
CVE-2025-12453Improper neutralization of input during web page generation vulnerability has been discovered in OpenText™ Vertica.OpenText™ Vertica
CVE-2025-11884Cross-site Scripting vulnerability discovered in OpenText™ Universal Discovery and CMDBOpenText™ uCMDB
CVE-2025-0884Privilege Escalation vulnerability has been discovered in OpenText™ Service Manager.OpenText™ Service Manager
CVE-2025-0883vulnerability has been discovered in OpenText™ Service Manager.OpenText™ Service Manager
CVE-2024-9841OpenText ArcSight Management Center and ArcSight Platform Stored XSSOpenText ArcSight Platform
CVE-2024-9432Cleartext Storage of Sensitive Information vulnerability has been discovered in OpenText™ Vertica.OpenText™ Vertica
CVE-2024-8125A remote code vulnerability has been discovered in OpenText™ Content Management.OpenText™ Content Management (Extended ECM)
CVE-2024-7650Remote code execution vulnerability discovered in OpenText™ Directory Services CE 23.4OpenText™ Directory Services
CVE-2024-7428Potential Open Redirect issues affect OpenText™ Network Node Manager i (NNMi).OpenText™ Network Node Manager i (NNMi)
CVE-2024-7427Potential Cross-Site Scripting vulnerability affect OpenText™ Network Node Manager i (NNMi).OpenText™ Network Node Manager i (NNMi)
CVE-2024-7085Exposure of private information vulnerability has been discovered in OpenText™ Solutions Business Manager (SBM).OpenText™ Solutions Business Manager (SBM)
CVE-2024-6361Improper Neutralization vulnerability (XSS) has been discovered in OpenText™ ALM Octane product.OpenText™ ALM Octane.
CVE-2024-6360Incorrect Permission Assignment for Critical Resource vulnerability has been discovered in OpenText™ Vertica.OpenText™ Vertica
CVE-2024-5532A stored XSS vulnerability has been discovered on OpenText™ Operations Agent (OA).OpenText™ Operations Agent
CVE-2024-4690Insecure usage for DocumentBuilderFactory and TransformerFactory in OpenText Application Automation ToolsOpenText Application Automation Tools
CVE-2024-4555User impersonation with MFA when configure in specific wayOpenText NetIQ Access Manager
CVE-2024-4189Multiple XXE sinks in Run LoadRunner script step in OpenText Application Automation ToolsOpenText Application Automation Tools
CVE-2024-4188Security vulnerability exists in Documentum server cloud releases that could allow access to sensitive information…OpenText™ Documentum™ Server
CVE-2024-4187Stored XSS vulnerability has been discovered in OpenText™ Filr. The vulnerability could cause users to not be warned…OpenText™ Filr
CVE-2024-4184Multiple XXE sinks in ALM archive post-build step in OpenText Application Automation ToolsOpenText Application Automation Tools
CVE-2024-3488File Upload vulnerability in unauthenticated session found in iManager.OpenText iManager
CVE-2024-3482OpenText ArcSight Enterprise Security Manager and ArcSight Platform Stored XSSOpenText ArcSight Platform
CVE-2024-2835OpenText ArcSight Enterprise Security Manager and ArcSight Platform Stored XSSOpenText ArcSight Platform
CVE-2024-2834OpenText ArcSight Management Center and ArcSight Platform Stored XSSOpenText ArcSight Platform
CVE-2024-1470Elevation of Privilege attack on NetIQ Client login extensionOpenText NetIQ Client Login Extension
CVE-2024-12862REST API allows users without permissions to remove external collaboratorsOpenText Content Server
CVE-2024-12706SQL Injection vulnerability discovered in OpenText™ Digital Asset Management.OpenText™ Digital Asset Management.
CVE-2024-12543A user enumeration and subsequent data integrity vulnerability affecting barcode functionalityOpenText Content Management
CVE-2024-12111Potential LDAP injection vulnerability in OpenText Privileged Access ManagerOpenText Privileged Access Manager
CVE-2024-10923Improper Neutralization vulnerability has been discovered in OpenText™ ALM Octane Management.OpenText™ ALM Octane Management
CVE-2024-10865Reflected Cross-Site Scripting vulnerability in OpenText Advanced AuthenticationOpenText Advance Authentication
CVE-2024-10864SQL Injection vulnerability has been discovered in OpenText™ Advanced Authentication.OpenText Advance Authentication
CVE-2024-0967OpenText / Micro Focus ArcSight Enterprise Security Manager Remote VulnerabilityOpenText ArcSight Enterprise Security Manager
CVE-2024-0622Local privilege escalation vulnerability could affect OpenText Operations Agent on Non-Windows platforms.opentext Operations Agent
CVE-2023-7260A path traversal vulnerability has been discovered in OpenText™ CX-E Voice.OpenText™ CX-E Voice
CVE-2023-7248OpenText Vertica Management console might be prone to bypass via crafted requestsOpentext Vertica Management Console
CVE-2023-7240Broken Access Control leading to SSRF in NetIQ Identity ConsoleOpenText NetIQ Identity Console
CVE-2023-6400Incorrect user authorization vulnerability on OpenText ZENworks Configuration Management (ZCM) product.OpenText™ ZENworks Configuration Management (ZCM)
CVE-2023-5913A potential Privilege Escalation vulnerability in opentext Fortify ScanCentral DAST API.opentext Fortify ScanCentral DAST
CVE-2023-4964Potential open redirect vulnerability in opentext SMAX and AMX product.opentext Asset Management X (AMX)
CVE-2023-4501Authentication bypass in OpenText (Micro Focus) Enterprise ServerOpenText Visual COBOL, COBOL Server, Enterprise Developer…
CVE-2023-32268Administrator equivalent Filr user can access proxy administrator credentialsOpenText Filr
CVE-2023-32266Code injection vulnerability found in OpenText Application Lifecycle Management (ALM),Quality Center.OpenText™ Application Lifecycle Management (ALM),Quality…
CVE-2023-32260A potential Misinterpretation of Input vulnerability has been identified in SMAX, AMX, and HCMX products.OpenText™ Hybrid Cloud Management X (HCMX)
CVE-2023-32259Potential Insufficient Access Control vulnerability has been identified in OpenText™ SMAX/AMX products.OpenText™ Asset Management X (AMX)
CVE-2022-26328User enumeration vulnerability has been discovered in OpenText™ Performance CenterOpenText Performance Center
CVE-2022-26327Stored cross-site scripting (XSS) has been discovered in OpenText™ Performance CenterOpenText Performance Center
CVE-2022-26323Incorrect Use of Privileged vulnerability has been discovered on OpenText™ UCMDB and Operation Bridge Manager product.OpenText™ UCMDB ( Classic and Containerized)
CVE-2022-26322Possible Insertion of Sensitive Information into Log File Vulnerability in Identity ManagerOpenText Identity Manager REST Driver 1.1.2.0200
CVE-2021-38135Possible External service interaction Vulnerability in OpenText iManagerOpenText iManager
CVE-2021-38133Possible Improper authentication Vulnerability in OpenText eDirectoryOpenText eDirectory
CVE-2021-38122Cross-Site Scripting (XSS) in Advance AuthenticationOpenText NetIQ Advance Authentication
CVE-2021-38121Weak communication protocol identified in Advance Authentication client applicationOpenText NetIQ Advance Authentication
CVE-2021-38120Remote Code Execution using Bash command Injection in backup scheduling functionality in NetIQ Advance AuthenticationOpenText NetIQ Advance Authentication
CVE-2021-38119Possible Reflected Cross-Site Scripting (XSS) Vulnerability in OpenText iManagerOpenText iManager
CVE-2021-38118Possible Local Privilege Escalation Vulnerability in OpenText iManagerOpenText iManager
CVE-2021-22533Possible Insertion of Sensitive Information into Log File VulnerabilityOpenText eDirectory
CVE-2021-22530Improper account management vulnerability in NetIQ Advance AuthenticationOpenText NetIQ Advance Authentication
CVE-2021-22529Sensitive Data Exposure leaks potential information in NetIQ Advance AuthenticationOpenText NetIQ Advance Authentication
CVE-2021-22518Sensitive Information logging in NetIQ Identity Manager DriverOpenText Identity Manager AzureAD Driver
CVE-2021-22509Handling of sensitive data in process memory in NetIQ Advance AuthenticationOpenText NetIQ Advance Authentication
CVE-2021-22508Potential SQL injection in OpenText Operations Bridge ReporterOpenText Operations Bridge Reporter
CVE-2021-22503Improper Neutralization of Input During Web Page Generation VulnerabilityOpenText eDirectory
CVE-2020-25836Potential information leakage resulting in unauthorized accessOpenText NetIQ Directory and Resource Administrator
CVE-2020-11862Insecure renegotiation in SSL protocol caused Denial of service attack in Privileged Account ManagerOpenText NetIQ Privileged Account Manager
CVE-2020-11850Cross site scripting vulnerability in Self Service Password ResetOpenText Self Service Password Reset
CVE-2020-11847Vulnerability in sshrelay in privileged access manager provides full system access.OpenText Privileged Access Manager
CVE-2020-11846Improper handling of token allows access to restricted resource in Privileged Access ManagerOpenText Privileged Access Manager
CVE-2020-11843Potential information leakage in administrator enabled debug modeOpenText NetIQ Access Manager
193 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.