CVE-2025-3478: Opentext Enterprise Security Manager

High severity, CVSS 8.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText Enterprise Security Manager. The vulnerability could be remotely exploited.

Affected products

  • Opentext Opentext Enterprise Security Manager: before 7.8.2 (fixed in 7.8.2)

Published 2025-08-25. Last modified 2026-06-17.