VYPR

Openmedia

by Openmedia

CVEs (2)

  • CVE-2026-47117CriJun 2, 2026
    risk 0.57cvss 9.8epss

    OpenMed before 1.5.2 contains a remote code execution vulnerability in the PII privacy-filter model loading path. The privacy-filter dispatcher used broad substring matching on the user-supplied model_name parameter, allowing a value such as attacker/foo-privacy-filter-bar to…

  • CVE-2007-0088Jan 5, 2007
    risk 0.00cvss epss 0.00

    Multiple directory traversal vulnerabilities in openmedia allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) src parameter to page.php or the (2) format parameter to search_form.php.