高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2026-24908 | 10.0 CRITICAL | OpenEMR has SQL Injection in Patient API Sort Parameter |
| CVE-2026-24849 | 10.0 CRITICAL | OpenEMR Arbitrary File Read Vulnerability |
| CVE-2026-25131 | 8.8 HIGH | OpenEMR has Broken Access Control in Procedures Configuration |
| CVE-2026-25746 | 8.8 HIGH | OpenEMR has SQL Injection Vulnerability |
| CVE-2025-69231 | 8.7 HIGH | OpenEMR has a Stored XSS in GAD-7 Form that Enables Session Hijacking and Privilege Escala |
| CVE-2025-67752 | 8.1 HIGH | OpenEMR Has Disabled SSL Certificate Verification in HTTP Client |
| CVE-2026-25164 | 8.1 HIGH | OpenEMR's Document and Insurance REST Endpoints Skip ACL |
| CVE-2026-24890 | 8.1 HIGH | OpenEMR Portal Users Can Forge Provider Signatures |
| CVE-2026-25476 | 7.5 HIGH | OpenEMR has Session Timeout Bypass via skip_timeout_reset |
| CVE-2026-25927 | 7.1 HIGH | OpenEMR Missing Authorization Checks in DICOM Viewer State API |
| CVE-2026-24896 | 6.5 MEDIUM | OpenEMR has Broken Access Control that allows unauthorized access to EDI Logs |
| CVE-2026-25124 | 6.5 MEDIUM | OpenEMR has Broken Access Control in Report/Clients/Message List CSV Export |
| CVE-2026-25929 | 6.5 MEDIUM | OpenEMR Patient Picture Context Allows Arbitrary Patient Photo Retrieval |
| CVE-2026-24847 | 6.1 MEDIUM | OpenEMR has Open Redirect in Eye Exam Form |
| CVE-2026-25135 | 4.5 MEDIUM | OpenEMR's location resource for Group.$export operation returns entire patient/user popula |
| CVE-2026-25743 | OpenEMR has Stored XSS in Questionnaire answers | |
| CVE-2025-67491 | OpenEMR has Stored XSS in ub04 helper | |
| CVE-2026-25220 | OpenEMR Messages "Show All" Not Restricted to Admins | |
| CVE-2026-23627 | OpenEMR has SQL Injection in Immunization Search/Report | |
| CVE-2026-24487 | OpenEMR has FHIR Patient Compartment Bypass in CareTeam Resource |
Showing 20 of 24 CVEs. View all on vendor page →
まだコメントはありません