CVE-2018-16153: Apereo Opencast

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

An issue was discovered in Apereo Opencast 4.x through 10.x before 10.6. It sends system digest credentials during authentication attempts to arbitrary external services in some situations.

Affected products

  • Apereo Opencast: from 4.0, before 10.6 (fixed in 10.6)

Published 2023-12-12. Last modified 2026-06-17.