VYPR

Openemr

by Openemr

Source repositories

CVEs (229)

  • CVE-2019-3967MedAug 20, 2019
    risk 0.45cvss 6.5epss 0.29

    In OpenEMR 5.0.1 and earlier, the patient file download interface contains a directory traversal flaw that allows authenticated attackers to download arbitrary files from the host system.

  • CVE-2019-3964MedAug 20, 2019
    risk 0.44cvss 6.1epss 0.53

    In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the doc_id parameter. This could allow an attacker to execute arbitrary code in the context of a user's session.

  • CVE-2019-3963MedAug 20, 2019
    risk 0.44cvss 6.1epss 0.53

    In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the patient_id parameter. This could allow an attacker to execute arbitrary code in the context of a user's session.

  • CVE-2026-33913HigMar 25, 2026
    risk 0.43cvss 7.7epss 0.00

    OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, an authenticated user with access to the Carecoordination module can upload a crafted CCDA document containing `<xi:include…

  • CVE-2021-41843MedDec 17, 2021
    risk 0.43cvss 6.5epss 0.14

    An authenticated SQL injection issue in the calendar search function of OpenEMR 6.0.0 before patch 3 allows an attacker to read data from all tables of the database via the parameter provider_id, as demonstrated by the /interface/main/calendar/index.php?module=PostCalendar&func=s…

  • CVE-2019-8368MedSep 16, 2019
    risk 0.43cvss 6.1epss 0.47

    OpenEMR v5.0.1-6 allows XSS.

  • CVE-2026-33932HigMar 26, 2026
    risk 0.42cvss 7.6epss 0.00

    OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, a stored cross-site scripting vulnerability in the CCDA document preview allows an attacker who can upload or send a CCDA document to execute…

  • CVE-2026-33918HigMar 26, 2026
    risk 0.42cvss 7.6epss 0.00

    OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, the billing file-download endpoint `interface/billing/get_claim_file.php` only verifies that the caller has a valid session and CSRF token, but does…

  • CVE-2026-33321HigMar 19, 2026
    risk 0.42cvss 7.6epss 0.00

    OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 8.0.0.2, users with the `Notes - my encounters` role can fill Eye Exam forms in patient encounters. The answers to the form can be printed out in PDF form. An…

  • CVE-2026-24488MedFeb 27, 2026
    risk 0.42cvss 6.5epss 0.00

    OpenEMR is a free and open source electronic health records and medical practice management application. In versions up to and including 8.0.0, an arbitrary file exfiltration vulnerability in the fax sending endpoint allows any authenticated user to read and transmit any file on…

  • CVE-2026-33914HigMar 26, 2026
    risk 0.40cvss 7.2epss 0.00

    OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, the PostCalendar module contains a blind SQL injection vulnerability in the `categoriesUpdate` administrative function. The `dels` POST parameter is…

  • CVE-2026-33910HigMar 25, 2026
    risk 0.40cvss 7.2epss 0.00

    OpenEMR is a free and open source electronic health records and medical practice management application. Versions up to and including 8.0.0.2 contain a SQL injection vulnerability in the patient selection feature that can be exploited by authenticated attackers. The…

  • CVE-2020-13565MedFeb 10, 2021
    risk 0.40cvss 6.1epss 0.02

    An open redirect vulnerability exists in the return_page redirection functionality of phpGACL 3.3.7, OpenEMR 5.0.2 and OpenEMR development version 6.0.0 (commit babec93f600ff1394f91ccd512bcad85832eb6ce). A specially crafted HTTP request can redirect users to an arbitrary URL. An…

  • CVE-2019-3966MedAug 20, 2019
    risk 0.40cvss 6.1epss 0.01

    In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the foreign_id parameter. This could allow an attacker to execute arbitrary code in the context of a user's session.

  • CVE-2019-3965MedAug 20, 2019
    risk 0.40cvss 6.1epss 0.01

    In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the document_id parameter. This could allow an attacker to execute arbitrary code in the context of a user's session.

  • CVE-2018-18035MedApr 2, 2019
    risk 0.40cvss 6.1epss 0.01

    A vulnerability in flashcanvas.swf in OpenEMR before 5.0.1 Patch 6 could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack on a targeted system.

  • CVE-2018-15140MedAug 13, 2018
    risk 0.40cvss 6.5epss 0.17

    Directory traversal in portal/import_template.php in versions of OpenEMR before 5.0.1.4 allows a remote attacker authenticated in the patient portal to read arbitrary files via the "docid" parameter when the mode is set to get.

  • CVE-2018-1000020MedFeb 9, 2018
    risk 0.40cvss 6.1epss 0.01

    OpenEMR version 5.0.0 contains a Cross Site Scripting (XSS) vulnerability in open-flash-chart.swf and _posteddata.php that can result in . This vulnerability appears to have been fixed in 5.0.0 Patch 2 or higher.

  • CVE-2017-6394MedMar 2, 2017
    risk 0.40cvss 6.1epss 0.01

    Multiple Cross-Site Scripting (XSS) issues were discovered in OpenEMR 5.0.0 and 5.0.1-dev. The vulnerabilities exist due to insufficient filtration of user-supplied data passed to the "openemr-master/gacl/admin/object_search.php" URL (section_value; src_form). An attacker could…

  • CVE-2026-34053HigMar 26, 2026
    risk 0.39cvss 7.1epss 0.00

    OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, missing authorization in the AJAX deletion endpoint `interface/forms/procedure_order/handle_deletions.php` allows any authenticated user, regardless…

Page 4 of 12