CVE-2026-76614
- EPSS 0.27%
- Veröffentlicht 19.08.2026 14:55:56
- Zuletzt bearbeitet 21.08.2026 20:16:44
OpenEMR before 8.3.0 contains a path traversal vulnerability in the EDI archive restore function. The archrestore_sel POST parameter is passed to the archive restore handler without sanitization for path traversal sequences. The handler checks whethe...
CVE-2026-40509
- EPSS 0.13%
- Veröffentlicht 19.08.2026 14:53:21
- Zuletzt bearbeitet 20.08.2026 16:17:23
OpenEMR before 8.3.0 contains a cross-site request forgery vulnerability in the DICOM viewer. The web_path GET parameter in the DICOM viewer page is embedded unsanitized as a URL without validation against expected path formats. An attacker can craft...
CVE-2026-40508
- EPSS 0.17%
- Veröffentlicht 19.08.2026 14:51:01
- Zuletzt bearbeitet 19.08.2026 16:17:09
OpenEMR before 8.3.0 contains a stored cross-site scripting vulnerability in the patient portal template import handler that allows authenticated attackers with Forms Administration permissions to upload template files containing arbitrary HTML or Ja...
CVE-2026-40507
- EPSS 0.24%
- Veröffentlicht 19.08.2026 14:48:49
- Zuletzt bearbeitet 19.08.2026 15:17:01
OpenEMR before 8.3.0 contains a reflected cross-site scripting vulnerability in the patient portal template import handler. The templateHtml GET parameter is reflected into the page response without sanitization. An attacker can craft a URL that exec...
- EPSS 0.45%
- Veröffentlicht 17.08.2026 20:39:03
- Zuletzt bearbeitet 18.08.2026 15:16:53
OpenEMR before 8.2.0 contains a path traversal vulnerability in the standard_tables_manage.php interface where the db GET parameter is passed without validation to temp_dir_cleanup(), which joins the value to the PHP temporary directory path and recu...
CVE-2026-67612
- EPSS 0.15%
- Veröffentlicht 03.08.2026 16:06:15
- Zuletzt bearbeitet 03.08.2026 17:16:44
OpenEMR through 8.2.0 contains a stored cross-site scripting vulnerability in the patient portal template system that allows authenticated administrators to inject arbitrary HTML and JavaScript by storing malicious payloads through the template save ...
CVE-2026-67611
- EPSS 0.33%
- Veröffentlicht 03.08.2026 16:04:34
- Zuletzt bearbeitet 03.08.2026 20:17:28
OpenEMR through 8.2.0 contains an authentication bypass vulnerability that allows attackers with valid credentials to circumvent multi-factor authentication by exploiting the exposed OAuth2 password grant flow through an unauthenticated client regist...
CVE-2026-67610
- EPSS 0.33%
- Veröffentlicht 03.08.2026 16:02:47
- Zuletzt bearbeitet 03.08.2026 17:16:43
OpenEMR through 8.2.0 contains an improper authentication vulnerability in the OAuth2 dynamic client registration endpoint that allows unauthenticated attackers to register a malicious client with system-level FHIR scopes by supplying a self-generate...
CVE-2026-39932
- EPSS 0.77%
- Veröffentlicht 03.08.2026 16:00:09
- Zuletzt bearbeitet 03.08.2026 17:16:36
OpenEMR through 8.2.0 contains a remote code execution vulnerability in the document category tree component (library/classes/Tree.class.php) that allows authenticated administrators to execute arbitrary operating system commands by injecting PHP pay...
CVE-2026-39931
- EPSS 0.33%
- Veröffentlicht 03.08.2026 15:54:13
- Zuletzt bearbeitet 03.08.2026 20:17:23
OpenEMR through 8.2.0 contains an authenticated SQL injection vulnerability in the backup configuration import feature that allows administrators with admin or super ACL privileges to execute arbitrary DDL and DML statements against the application d...