microfocus has 2 CVEs on record between 2023 and 2026. The median CVSS is 8.8 (high), with 1 rated critical.
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 8.8
- Publish → KEV
- —
- Last 90 days
- 0 prev 1
Products
- cobol_server 1
- operations_agent 1
2
Total CVEs
1
Critical
0
CISA KEV
0
Exploited
Worst active — by depth score
CVE-2023-4501Critical· 9.8User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), vers…54CVE-2026-2123High· 7.8A security audit identified a privilege escalation vulnerability in Operations Agent(<=OA 12.29) on Windows43
microfocus vulnerabilities
CVEs affecting microfocus, newest first. Open any entry for full detail, references, and exploit status.
2 CVEsRSS
CVE-2026-2123High· 7.8A security audit identified a privilege escalation vulnerability in Operations Agent(<=OA 12.29) on Windows
A security audit identified a privilege escalation vulnerability in Operations Agent(<=OA 12.29) on Windows. Under specific conditions Operations Agent may run executables from specific writeable locations.Thanks to Manuel Rickli & Phili…
▾ Twilightmicrofocus · operations_agentEPSS 0.10%via NVD
CVE-2023-4501Critical· 9.8User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), vers…
User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), vers…
▾ Midnightmicrofocus · cobol_serverEPSS 0.75%via NVD