Loading HuntDB...

OpenEMR

2 Products 39 CVEs

CVE Severity Distribution (All Time)

Critical
3
High
21
Medium
15
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 0 CVEs

Recent CVEs

View all
CVE-2024-0875 HIGH 1 year ago

A stored cross-site scripting (XSS) vulnerability exists in openemr/openemr version 7.0.1. An attacker can inject malicious payloads into the 'inputB…

CVE-2024-37734 CRITICAL 1 year, 4 months ago

An issue in OpenEMR 7.0.2 allows a remote attacker to escalate privileges viaa crafted POST request using the noteid parameter.

CVE-2023-2948 HIGH 2 years, 5 months ago

Cross-site Scripting (XSS) - Generic in GitHub repository openemr/openemr prior to 7.0.1.

CVE-2023-2950 MEDIUM 2 years, 5 months ago

Improper Authorization in GitHub repository openemr/openemr prior to 7.0.1.

CVE-2023-2949 HIGH 2 years, 5 months ago

Cross-site Scripting (XSS) - Reflected in GitHub repository openemr/openemr prior to 7.0.1.

CVE-2023-2944 MEDIUM 2 years, 5 months ago

Improper Access Control in GitHub repository openemr/openemr prior to 7.0.1.

CVE-2023-2947 MEDIUM 2 years, 5 months ago

Cross-site Scripting (XSS) - Stored in GitHub repository openemr/openemr prior to 7.0.1.

CVE-2023-2945 MEDIUM 2 years, 5 months ago

Missing Authorization in GitHub repository openemr/openemr prior to 7.0.1.

CVE-2023-2942 HIGH 2 years, 5 months ago

Improper Input Validation in GitHub repository openemr/openemr prior to 7.0.1.

CVE-2023-2943 MEDIUM 2 years, 5 months ago

Code Injection in GitHub repository openemr/openemr prior to 7.0.1.