VYPR

Maven package

ca.uhn.hapi.fhir/hapi-fhir-base

pkg:maven/ca.uhn.hapi.fhir/hapi-fhir-base

Vulnerabilities (1)

  • CVE-2019-12741Jun 5, 2019
    affected < 3.8.0fixed 3.8.0

    XSS exists in the HAPI FHIR testpage overlay module of the HAPI FHIR library before 3.8.0. The attack involves unsanitized HTTP parameters being output in a form page, allowing attackers to leak cookies and other sensitive information from ca/uhn/fhir/to/BaseController.java via a