CVE-2026-1658

MEDIUM

OpenText Directory Services 20.4.1-25.2 - Cache Poisoning

Title source: llm

Description

User Interface (UI) Misrepresentation of Critical Information vulnerability in OpenText™ Directory Services allows Cache Poisoning.  The vulnerability could be exploited by a bad actor to inject manipulated text into the OpenText application, potentially misleading users. This issue affects Directory Services: from 20.4.1 through 25.2.

Scores

CVSS v3 5.3
EPSS 0.0003
EPSS Percentile 9.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Classification

CWE
CWE-451
Status published

Affected Products (1)

opentext/directory_services < 25.2

Timeline

Published Feb 19, 2026
Tracked Since Feb 20, 2026