VYPR
High severityNVD Advisory· Published Mar 27, 2026· Updated Jun 17, 2026

CVE-2025-13478

CVE-2025-13478

Description

Cache misconfiguration vulnerability in OpenText Identity Manager on Windows, Linux allows remote authenticated users to obtain another user's session data via insecure application cache handling. This issue affects Identity Manager: 25.2(v4.10.1).

Affected products

2
  • Opentext/Identity Managercpe-rescue2 versions
    25.2(v4.10.1)+ 1 more
    • (no CPE)range: 25.2(v4.10.1)
    • (no CPE)range: 25.2(v4.10.1)

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.