CVE-2025-31121
01.04.2025, 15:16
OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 7.0.3.1, the Patient Image feature in OpenEMR is vulnerable to cross-site scripting attacks via the EXIF title in an image. This vulnerability is fixed in 7.0.3.1.
Vendor | Product | Version |
---|---|---|
open-emr | openemr | 𝑥 < 7.0.3.1 |
𝑥
= Vulnerable software versions