CVE-2025-8052: HQL Injection vulnerability has been discovered in Opentext Flipper.
SQL Injection vulnerability in opentext Flipper allows SQL Injection.
The vulnerability could allow a low privilege user to interact with the database in unintended ways and extract data by interacting with the HQL processor.
This issue affects Flipper: 3.1.2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8052?
CVE-2025-8052 is classified as a medium severity SQL Injection vulnerability affecting OpenText Flipper.
How do I fix CVE-2025-8052?
To fix CVE-2025-8052, update OpenText Flipper to version 3.1.3 or later, where the vulnerability has been addressed.
Who is affected by CVE-2025-8052?
Low privilege users interacting with the HQL processor in OpenText Flipper version 3.1.2 are affected by CVE-2025-8052.
What type of vulnerability is CVE-2025-8052?
CVE-2025-8052 is an SQL Injection vulnerability that allows unintended database interactions.
What can happen if CVE-2025-8052 is exploited?
If exploited, CVE-2025-8052 could allow attackers to extract sensitive data from the database without proper authorization.