Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

OpenMRS — Vulnerabilities & Security Advisories 10

Browse all 10 CVE security advisories affecting OpenMRS. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CVE IDTitleCVSSSeverityPublished
CVE-2025-46823 OpenMRS has Vulnerability in FHIR2 Module Privileges — openmrs-module-fhir2CWE-862 7.1AIHighAI2025-05-29
CVE-2020-36636 OpenMRS Admin UI Module Account Setup AccountPageController.java sendErrorMessage cross site scripting — Admin UI ModuleCWE-79 3.5 Low2022-12-27
CVE-2021-4292 OpenMRS Admin UI Module Manage Privilege Page privilege.gsp cross site scripting — Admin UI ModuleCWE-79 3.5 Low2022-12-27
CVE-2021-4291 OpenMRS Admin UI Module location.gsp cross site scripting — Admin UI ModuleCWE-79 3.5 Low2022-12-27
CVE-2020-36635 OpenMRS Appointment Scheduling Module AppointmentTypeValidator.java validateFieldName cross site scripting — Appointment Scheduling ModuleCWE-79 3.5 Low2022-12-27
CVE-2021-4289 OpenMRS openmrs-module-referenceapplication User App Page UserAppPageController.java post cross site scripting — openmrs-module-referenceapplicationCWE-79 3.5 Low2022-12-27
CVE-2021-4288 OpenMRS openmrs-module-referenceapplication userApp.gsp cross site scripting — openmrs-module-referenceapplicationCWE-79 3.5 Low2022-12-27
CVE-2021-4284 OpenMRS HTML Form Entry UI Framework Integration Module cross site scripting — HTML Form Entry UI Framework Integration ModuleCWE-79 3.5 Low2022-12-27
CVE-2022-4727 OpenMRS Appointment Scheduling Module Notes AppointmentRequest.java getNotes cross site scripting — Appointment Scheduling ModuleCWE-707 3.5 Low2022-12-24
CVE-2022-23612 Directory Traversal in OpenMRS Startup Filter — openmrs-coreCWE-22 7.5 High2022-02-22

This page lists every published CVE security advisory associated with OpenMRS. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.