Security Advisory

CVE-2026-25746

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-25 18:39:24
Last updated 2026-02-26 20:54:39
Assigner GitHub_M
State PUBLISHED

Description

OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior to 8.0.0 contain a SQL injection vulnerability in prescription that can be exploited by authenticated attackers. The vulnerability exists due to insufficient input validation in the prescription listing functionality. Version 8.0.0 fixes the vulnerability.