Browse all 7 CVE security advisories affecting Grassroot DICOM. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Grassroot DICOM is an open-source medical imaging platform designed for handling DICOM files in healthcare environments. Historically, it has been susceptible to multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues, as evidenced by its seven recorded CVEs. The platform's security posture has been compromised through improper input validation and insufficient access controls, leading to potential unauthorized access or system compromise. While no major public incidents have been widely documented, its consistent vulnerability pattern suggests ongoing security challenges in handling sensitive medical data securely.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-53618 | Grassroot DICOM 缓冲区错误漏洞 — Grassroot DICOMCWE-119 | 7.4 | High | 2025-12-16 |
| CVE-2025-53619 | Grassroot DICOM 缓冲区错误漏洞 — Grassroot DICOMCWE-119 | 7.4 | High | 2025-12-16 |
| CVE-2025-52582 | Grassroot DICOM 安全漏洞 — Grassroot DICOMCWE-119 | 7.4 | High | 2025-12-16 |
| CVE-2025-48429 | Grassroot DICOM 安全漏洞 — Grassroot DICOMCWE-119 | 7.4 | High | 2025-12-16 |
| CVE-2024-22391 | Grassroot DICOM 缓冲区错误漏洞 — Grassroot DICOMCWE-119 | 7.7 | High | 2024-04-25 |
| CVE-2024-22373 | Grassroot DICOM 安全漏洞 — Grassroot DICOMCWE-119 | 8.1 | High | 2024-04-25 |
| CVE-2024-25569 | Grassroot DICOM 缓冲区错误漏洞 — Grassroot DICOMCWE-125 | 6.5 | Medium | 2024-04-25 |
This page lists every published CVE security advisory associated with Grassroot DICOM. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.