CVE-2025-2236: Opentext Advanced Authentication

Low severity, CVSS 2.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in OpenText Advanced Authentication allows Information Elicitation. The vulnerability could reveal sensitive information while managing and configuring of the external services. This issue affects Advanced Authentication versions before 6.5.

Affected products

  • Opentext Advanced Authentication: before 6.5 (fixed in 6.5)

Published 2025-05-27. Last modified 2026-06-17.