CVE-2023-30056: Fico Origination Manager Decision

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

A session takeover vulnerability exists in FICO Origination Manager Decision Module 4.8.1 due to insufficient protection of the JSESSIONID cookie.

Affected products

  • Fico Origination Manager Decision: version 4.8.1 only

Published 2023-05-09. Last modified 2026-07-09.