VYPR
Vendor

OpenEdge

Products
2
CVEs
3
Across products
3
Status
Private

Products

2

Recent CVEs

3
  • CVE-2024-1403CriFeb 27, 2024
    risk 0.65cvss 10.0epss 0.03

    In OpenEdge Authentication Gateway and AdminServer prior to 11.7.19, 12.2.14, 12.8.1 on all platforms supported by the OpenEdge product, an authentication bypass vulnerability has been identified.  The vulnerability is a bypass to authentication based on a failure to properly…

  • CVE-2025-7389HigApr 14, 2026
    risk 0.53cvss epss 0.00

    A vulnerability in the AdminServer component of OpenEdge on all supported platforms grants its authenticated users OS-level access to the server through the adopted authority of the AdminServer process itself.  The delegated authority of the AdminServer could allow its users…

  • CVE-2024-7346HigSep 3, 2024
    risk 0.47cvss 7.2epss 0.00

    Host name validation for TLS certificates is bypassed when the installed OpenEdge default certificates are used to perform the TLS handshake for a networked connection.  This has been corrected so that default certificates are no longer capable of overriding host name…