nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2025-8052 CVE-2025-8052
LOW
HQL Injection vulnerability has been discovered in Opentext Flipper.
Record summary
CVE-2025-8052 has a selected CVSS score of 1.0 (low).
Description
SQL Injection vulnerability in opentext Flipper allows SQL Injection. The vulnerability could allow a low privilege user to interact with the database in unintended ways and extract data by interacting with the HQL processor. This issue affects Flipper: 3.1.2.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Oct 21, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
FlipperBrowse opentext / FlipperDefault status: unaffected | CVE List | 3.1.2 | affected |
References
2support.opentext.com
https://support.opentext.com/csm?id=ot_kb_unauthenticated&sysparm_article=KB0850533