VYPR
Critical severity9.8NVD Advisory· Published Mar 3, 2026· Updated Jun 17, 2026

CVE-2026-3266

CVE-2026-3266

Description

Missing Authorization vulnerability in OpenText™ Filr allows Authentication Bypass. The vulnerability could allow unauthenticated users to get XSRF token and do RPC with carefully crafted programs.

This issue affects Filr: through 25.1.2.

Affected products

3
  • Opentext/Filrllm-fuzzy3 versions
    <=25.1.2+ 2 more
    • (no CPE)range: <=25.1.2
    • cpe:2.3:a:opentext:filr:*:*:*:*:*:*:*:*range: <25.1.3
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.