Vulnerability Details CVE-2026-3266
Missing Authorization vulnerability in OpenText™ Filr allows Authentication Bypass. The vulnerability could allow unauthenticated users to get XSRF token and do RPC with carefully crafted programs.
This issue affects Filr: through 25.1.2.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 25.8%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2026-3266
-
cpe:2.3:a:opentext:filr:23.2
-
cpe:2.3:a:opentext:filr:23.3
-
cpe:2.3:a:opentext:filr:23.4
-
cpe:2.3:a:opentext:filr:24.1
-
cpe:2.3:a:opentext:filr:24.1.1
-
cpe:2.3:a:opentext:filr:24.2
-
cpe:2.3:a:opentext:filr:24.2.1
-
cpe:2.3:a:opentext:filr:24.3
-
cpe:2.3:a:opentext:filr:24.4
-
cpe:2.3:a:opentext:filr:25.1
-
cpe:2.3:a:opentext:filr:25.1.1
-
cpe:2.3:a:opentext:filr:25.1.2