Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

OpenEMR — Vulnerabilities & Security Advisories 131

Browse all 131 CVE security advisories affecting OpenEMR. AI-powered Chinese analysis, POCs, and references for each vulnerability.

OpenEMR is an open-source electronic health record and medical practice management application designed to facilitate patient data management and clinical workflows. Historically, its codebase has exhibited significant security flaws, with over 120 Common Vulnerabilities and Exposures (CVEs) recorded. These vulnerabilities predominantly involve remote code execution, cross-site scripting, and privilege escalation, often stemming from insufficient input validation and improper access controls within the PHP-based architecture. Notable incidents include critical flaws allowing unauthenticated attackers to execute arbitrary commands or bypass authentication mechanisms, exposing sensitive patient information. The high volume of historical CVEs reflects challenges in maintaining rigorous security standards across a large, community-driven codebase. While recent updates have addressed many issues, the application’s complexity and extensive feature set continue to present attack surfaces that require diligent patching and configuration hardening to mitigate risks associated with data breaches and unauthorized system access.

Top products by OpenEMR: OpenEMR openemr/openemr
CVE ID Title CVSS Severity Published
CVE-2026-29187 OpenEMR Vulnerable to Authenticated Blind Boolean-Based SQL Injection in new_search_popup.php — openemr CWE-89 8.1 High 2026-03-25
CVE-2026-33346 OpenEMR has stored XSS in portal_payment.php via Unescaped table_args — openemr CWE-79 8.7 High 2026-03-19
CVE-2026-33305 OpenEMR has Authorization Bypass in FaxSMS AppDispatch Constructor — openemr CWE-696 5.4 Medium 2026-03-19
CVE-2026-33304 OpenEMR has Authorization Bypass in Dated Reminders Log — openemr CWE-639 6.5 Medium 2026-03-19
CVE-2026-33303 OpenEMR Vulnerable to Stored XSS via Unescaped portal_login_username in Credential Print View — openemr CWE-79 5.4 Medium 2026-03-19
CVE-2026-33302 OpenEMR: zhAclCheck Ignores Explicit ACL Denies — openemr CWE-863 7.6 - 2026-03-19
CVE-2026-33321 OpenEMR has Out-of-Band Server-Side Request Forgery (OOB SSRF) — openemr CWE-918 7.6 - 2026-03-19
CVE-2026-33301 OpenEMR has arbitrary image file read via PDF generator — openemr CWE-116 3.5 - 2026-03-19
CVE-2026-33299 OpenEMR has Stored XSS in patient encounter Eye Exam form answers — openemr CWE-79 5.4 - 2026-03-19
CVE-2026-32119 OpenEMR has Stored DOM XSS via SearchHighlight text-node reconstruction on Custom Report page — openemr CWE-79 4.4 Medium 2026-03-19
CVE-2026-32238 OpenEMR has Remote Code Execution in backup functionality — openemr CWE-78 9.1 Critical 2026-03-19
CVE-2026-25928 OpenEMR Vulnerable to Path Traversal When Zipping DICOM Folders — openemr CWE-22 6.5 Medium 2026-03-19
CVE-2026-25744 OpenEMR: POST /api/.../vital Accepts Attacker-Supplied id and Overwrites Arbitrary Vitals — openemr CWE-639 6.5 Medium 2026-03-19
CVE-2026-25745 OpenEMR's Message Update Ignores Patient id — openemr CWE-639 6.5 Medium 2026-03-18
CVE-2026-32127 SQL Injection Vulnerability in ajax graphs library (OpenEMR) — openemr CWE-89 8.8 High 2026-03-11
CVE-2026-32126 OpenEMR: Inverted ACL Condition in CDR ControllerRouter Allows Any Authenticated User to Modify/Delete Clinical Rules and Plans — openemr CWE-862 7.1 High 2026-03-11
CVE-2026-32125 OpenEMR: Stored XSS in Track Anything Graphs via Unescaped Dygraph Titles/Labels — openemr CWE-79 5.4 Medium 2026-03-11
CVE-2026-32124 OpenEMR: Dynamic Code Picker Renders Unescaped Descriptions (Stored XSS) — openemr CWE-79 5.4 Medium 2026-03-11
CVE-2026-32123 OpenEMR: Therapy Group Sensitivity ACL No Longer Enforced — openemr CWE-863 7.7 High 2026-03-11
CVE-2026-32122 OpenEMR: Missing Authorization on Claim File Tracker UI and AJAX Endpoint (V2) — openemr CWE-862 4.3 Medium 2026-03-11
CVE-2026-32121 OpenEMR: Stored DOM XSS via `.html()` in Portal Signer Modal — openemr CWE-79 7.7 High 2026-03-11
CVE-2026-32118 OpenEMR has Stored XSS in Graphical Pain Map legend via unescaped annotation text — openemr CWE-79 5.4 Medium 2026-03-11
CVE-2026-24898 OpenEMR has an Unauthenticated MedEx Token Disclosure — openemr CWE-287 10.0 Critical 2026-03-03
CVE-2026-25146 OpenEMR's payments gateway_api_key secret rendered into client JS code — openemr CWE-200 9.6 Critical 2026-03-03
CVE-2026-24848 OpenEMR Arbitrary File Write leading to Remote Code Execution — openemr CWE-22 8.8AI High AI 2026-03-03
CVE-2026-25147 OpenEMR's Portal Payment Endpoint Trusts User-Controlled pid — openemr CWE-639 7.1 High 2026-02-27
CVE-2026-24488 OpenEMR Vulnerable to Arbitrary File Exfiltration via Fax Endpoint — openemr CWE-22 6.5 Medium 2026-02-27
CVE-2026-27943 OpenEMR's Eye Exam View Trusts form_id Without Verifying Patient/Encounter Ownership — openemr CWE-639 6.5 Medium 2026-02-26
CVE-2026-25930 OpenEMR's Printable LBF Endpoint Leaks Arbitrary Patient Forms — openemr CWE-639 6.5 Medium 2026-02-25
CVE-2026-25929 OpenEMR Patient Picture Context Allows Arbitrary Patient Photo Retrieval — openemr CWE-639 6.5 Medium 2026-02-25

This page lists every published CVE security advisory associated with OpenEMR. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.