Micro Focus · Micro Focus Operations Bridge- Containerized · CVE-2022-38754
**Name of the Vulnerable Software and Affected Versions**
Micro Focus Operations Bridge Manager versions prior to 2022.11
Micro Focus Operations Bridge- Containerized versions prior to 2022.11
**Description**
A potential issue has been identified in Micro Focus Operations Bridge - Containerized and Micro Focus Operations Bridge Manager. The issue could be exploited by a malicious authenticated OBM user to run Java Scripts in the browser context of another OBM user. This issue is only applicable if the Operations Bridge Manager capability is deployed.
**Recommendations**
For Micro Focus Operations Bridge Manager versions prior to 2022.11, update to version 2022.11 or later.
For Micro Focus Operations Bridge- Containerized versions prior to 2022.11, update to version 2022.11 or later.
As a temporary workaround, consider restricting access to the Operations Bridge Manager capability until a patch is available.