← Back

Flipper

flipper

Vendor: Opentext • 6 CVEs

CVEs (6)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Opentext
1Flipper
Jun 17, 2026
Oct 21, 2025
5.3 MEDIUM· v4
6.5 MEDIUM· v3
N/A· v2
External Control of File Name or Path vulnerability in opentext Flipper allows Path Traversal.  The vulnerability could allow a user to access files hosted on the server. This issue affects Flipper: 3.1.2.
1Opentext
1Flipper
Jun 17, 2026
Oct 20, 2025
1.0 LOW· v4
9.1 CRITICAL· v3
N/A· v2
Insufficient Granularity of Access Control vulnerability in opentext Flipper allows Exploiting Incorrectly Configured Access Control Security Levels. The vulnerability could allow a low privilege user to interact with th...Show more
Insufficient Granularity of Access Control vulnerability in opentext Flipper allows Exploiting Incorrectly Configured Access Control Security Levels. The vulnerability could allow a low privilege user to interact with the backend API without sufficient privileges. This issue affects Flipper: 3.1.2.Show less
1Opentext
1Flipper
Jun 17, 2026
Oct 20, 2025
1.0 LOW· v4
8.8 HIGH· v3
N/A· v2
SQL Injection vulnerability in opentext Flipper allows SQL Injection.  The vulnerability could allow a low privilege user to interact with the database in unintended ways and extract data by interacting with the HQL pro...Show more
SQL Injection vulnerability in opentext Flipper allows SQL Injection.  The vulnerability could allow a low privilege user to interact with the database in unintended ways and extract data by interacting with the HQL processor. This issue affects Flipper: 3.1.2.Show less
1Opentext
1Flipper
Jun 17, 2026
Oct 20, 2025
5.3 MEDIUM· v4
6.5 MEDIUM· v3
N/A· v2
Path Traversal vulnerability in opentext Flipper allows Absolute Path Traversal.  The vulnerability could allow a user to access files hosted on the server. This issue affects Flipper: 3.1.2.
1Opentext
1Flipper
Jun 17, 2026
Oct 20, 2025
2.3 LOW· v4
8.8 HIGH· v3
N/A· v2
Insufficient Granularity of Access Control vulnerability in opentext Flipper allows Exploiting Incorrectly Configured Access Control Security Levels. The vulnerability could allow a low-privilege user to elevate privileg...Show more
Insufficient Granularity of Access Control vulnerability in opentext Flipper allows Exploiting Incorrectly Configured Access Control Security Levels. The vulnerability could allow a low-privilege user to elevate privileges within the application. This issue affects Flipper: 3.1.2.Show less
1Opentext
1Flipper
Jun 17, 2026
Oct 20, 2025
5.3 MEDIUM· v4
6.5 MEDIUM· v3
N/A· v2
External Control of File Name or Path vulnerability in opentext Flipper allows Path Traversal. The vulnerability could allow a user to submit a stored local file path and then download the specified file from the system...Show more
External Control of File Name or Path vulnerability in opentext Flipper allows Path Traversal. The vulnerability could allow a user to submit a stored local file path and then download the specified file from the system by requesting the stored document ID. This issue affects Flipper: 3.1.2.Show less