CVE-2024-10923: Opentext Alm Octane
High severity, CVSS 8.6. EPSS: 0.3% chance of exploitation in the next 30 days.
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText™ ALM Octane Management allows Stored XSS. The vulnerability could result in a remote code execution attack. This issue affects ALM Octane Management: from 16.2.100 through 24.4.
Affected products
- Opentext Alm Octane: from 16.2.100, up to and including 24.4
- Opentext Alm Octane Management: from 16.2.100, up to and including 24.4
Published 2024-11-12. Last modified 2026-06-17.