CVE-2026-44203High· 8.3▾ TwilightOpen Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the OAuth 2.0 and OpenID Connect authorization endpoint does not sufficiently encode user-supplied parameters before FormPostResponse.ftl and checkSession…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 45.7 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 15.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.6%
9.3 → 8.3
critical → high
Last analysed / modified upstream
Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the OAuth 2.0 and OpenID Connect authorization endpoint does not sufficiently encode user-supplied parameters before FormPostResponse.ftl and checkSession.ftl render them into HTML for the form_post response mode. An unauthenticated attacker can induce a user to open a crafted authorization request and execute script in the OpenAM origin. This issue is fixed in version 16.1.1.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Affected packages:
org.openidentityplatform.openam:openam-oauth2 >= 13.0.0, < 16.1.1Patched in:
org.openidentityplatform.openam:openam-oauth2 16.1.1Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-44793High· 7.0Open Access Management (OpenAM) is an access management solution
CVE-2026-53660High· 7.4Open Access Management (OpenAM) is an access management solution
CVE-2026-62280Medium· 6.1Open Access Management (OpenAM) is an access management solution
CVE-2026-47424High· 7.5Open Access Management (OpenAM) is an access management solution
CVE-2026-47426High· 7.6Open Access Management (OpenAM) is an access management solution
CVE-2026-48717Critical· 9.1Open Access Management (OpenAM) is an access management solution