CVE-2019-11651: Micro Focus Enterprise Developer

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

Reflected XSS on Micro Focus Enterprise Developer and Enterprise Server, all versions prior to version 3.0 Patch Update 20, version 4.0 Patch Update 12, and version 5.0 Patch Update 2. The vulnerability could be exploited to redirect a user to a malicious page or forge certain types of web requests.

Affected products

  • Micro Focus Enterprise Developer: version 3.0 only; version 4.0 only; version 5.0 only
  • Micro Focus Enterprise Server: version 3.0 only; version 4.0 only; version 5.0 only

Published 2019-10-02. Last modified 2026-06-17.