CVE-2024-10923: Opentext Alm Octane

High severity, CVSS 8.6. EPSS: 0.3% chance of exploitation in the next 30 days.

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText™ ALM Octane Management allows Stored XSS. The vulnerability could result in a remote code execution attack. This issue affects ALM Octane Management: from 16.2.100 through 24.4.

Affected products

  • Opentext Alm Octane: from 16.2.100, up to and including 24.4
  • Opentext Alm Octane Management: from 16.2.100, up to and including 24.4

Published 2024-11-12. Last modified 2026-06-17.