
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2025-8053 is a security vulnerability discovered in OpenText Flipper version 3.1.2. The vulnerability is classified as an Insufficient Granularity of Access Control issue that was disclosed on October 20, 2025. The vulnerability affects the access control mechanisms in the OpenText Flipper application, specifically impacting how low-privilege users interact with the backend API (NVD).
The vulnerability is characterized by insufficient granularity in access control mechanisms, which allows low-privilege users to interact with the backend API without proper privilege verification. The severity assessment shows a Critical CVSS v3.1 base score of 9.1 with the vector string CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N. The vulnerability is categorized under CWE-1220 (Insufficient Granularity of Access Control) (NVD).
The vulnerability could allow low-privilege users to interact with the backend API without sufficient privileges, potentially leading to unauthorized access to sensitive functions and data. The high CVSS score indicates significant potential impact on both confidentiality and integrity of the affected system (NVD).
OpenText has documented this vulnerability in their knowledge base and provided information about the issue. Users of OpenText Flipper 3.1.2 should monitor for updates and apply any security patches as they become available (OpenText KB).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."