Openemr

Vendor:

First CVE: Jun 9, 2006 · Active for 20 years

224
Total CVEs
More Total CVEs than 100% of tracked products
14.0
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 43% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Openemr over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 9, 2006
20 years ago
Most Recent CVE
Jun 9, 2026
49 days ago

CVE Severity & Scoring

Openemr224 CVEs
All CVEs352,785 CVEs
LowMediumHighCritical
Attack Vector
Local1 (0.4%)
Network210 (93.8%)
Unknown13 (5.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low207 (92.4%)
High4 (1.8%)
Unknown13 (5.8%)
User Interaction
None134 (59.8%)
Unknown13 (5.8%)
Required77 (34.4%)
Privileges Required
Low135 (60.3%)
High21 (9.4%)
None55 (24.6%)
Unknown13 (5.8%)

Top CVEs

Signals from CVEs in this product scope (224 CVEs).

224 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Cross-site Scripting (XSS) - Generic in GitHub repository openemr/openemr prior to 7.0.1.
May 28, 20236.182NOYES
Cross-site Scripting (XSS) - Reflected in GitHub repository openemr/openemr prior to 7.0.0.1.
Aug 9, 20226.182NOYES
An issue was discovered in custom/ajax_download.php in OpenEMR before 5.0.2 via the fileName parameter. An attacker can download any file (that is readable by the user www-data) fr
Aug 13, 20198.881NOYES
In OpenEMR, versions 2.7.3-rc1 to 6.0.0 are vulnerable to Stored Cross-Site-Scripting (XSS) due to user input not being validated properly in the `Allergies` section. An attacker c
Mar 22, 20215.467NONO
OpenEMR 5.0.1 allows an authenticated attacker to upload and execute malicious PHP scripts through /controller.php.
Jan 20, 20218.866NONO
Cross-site Scripting (XSS) - Stored in GitHub repository openemr/openemr prior to 7.0.1.
May 27, 20234.865NONO
Non-Privilege User Can Created New Rule and Lead to Stored Cross Site Scripting in GitHub repository openemr/openemr prior to 6.0.0.4.
Mar 30, 20225.462NONO
The Patient Portal of OpenEMR 5.0.2.1 is affected by a Command Injection vulnerability in /interface/main/backup.php. To exploit the vulnerability, an authenticated attacker can se
Feb 7, 20218.861NONO
OS command injection occurring in versions of OpenEMR before 5.0.1.4 allows a remote authenticated attacker to execute arbitrary commands by making a crafted request to interface/m
Aug 15, 20188.859NONO
A cross-site scripting vulnerability exists in the template functionality of phpGACL 3.3.7. A specially crafted HTTP request can lead to arbitrary JavaScript execution. An attacker
Feb 1, 20216.156NONO

Exploit Exposure

Signals from CVEs in this product scope (224 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
2 CVEs
0.9% of CVEs· 96th percentile
Nuclei
5 CVEs
2.2% of CVEs· 97th percentile
ExploitDB
20 CVEs
8.9% of CVEs· 86th percentile

Social Chatter

Signals from CVEs in this product scope (224 CVEs).

Media Mentions

Signals from CVEs in this product scope (224 CVEs).

Top CNAs Publishing CVEs For Openemr

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
7.0.3.416.50.4%00
7.0.318.80.3%00
7.0.229.83.4%00
7.0.126.20.4%00
6.0.066.77.0%01
5.0.2.158.013.7%00
5.0.287.633.5%00
5.0.1-626.724.8%00
5.0.1.425.40.9%00
5.0.1.318.80.6%00
5.0.127.535.9%00
5.0.037.51.9%00
4.2.015.02.9%00
4.1.215.02.9%00
4.1.155.42.1%03
4.1.055.64.3%04
4.0.045.92.1%03
3.2.026.32.5%01
3.1.026.32.5%01
3.0.115.02.9%00