CVE-2024-12863: Opentext Content Management

Medium severity, CVSS 5.7. EPSS: 0.4% chance of exploitation in the next 30 days.

Stored XSS in Discussions in OpenText Content Management CE 20.2 to 25.1 on Windows and Linux allows authenticated malicious users to inject code into the system.

Affected products

  • Opentext Opentext Content Management: version 20.2-25.1 only

Published 2025-04-21. Last modified 2026-06-17.