Back to search
CVE-2025-8095
Published: Apr 14, 2026
Modified: Apr 15, 2026
PUBLISHED
Description
The OECH1 prefix encoding is intended to obfuscate values across the OpenEdge platform. It has been identified as cryptographically weak and unsuitable for stored encodings and enterprise applications. OECH1 encodings should be considered exploitable and immediately replaced by any other supported prefix encoding, all of which are based on symmetric encryption.
| Vendor | Product | Versions |
|---|---|---|
Progress Software Corporation | OpenEdge | affected 12.2.0 - <= 12.2.18affected 12.8.0 - <= 12.8.9 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now