OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior to 8.0.0 contain a SQL injection vulnerability in prescription that can be exploited by authenticated attackers. The vulnerability exists due to insufficient input validation in the prescription listing functionality. Version 8.0.0 fixes the vulnerability.
Metrics
Affected Vendors & Products
References
History
Fri, 27 Feb 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Open-emr
Open-emr openemr |
|
| CPEs | cpe:2.3:a:open-emr:openemr:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Open-emr
Open-emr openemr |
Thu, 26 Feb 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openemr
Openemr openemr |
|
| Vendors & Products |
Openemr
Openemr openemr |
Wed, 25 Feb 2026 19:15:00 +0000
Status: PUBLISHED
Assigner: GitHub_M
Published: 2026-02-25T18:39:24.787Z
Updated: 2026-02-26T20:54:39.616Z
Reserved: 2026-02-05T16:48:00.429Z
Link: CVE-2026-25746
No data.
Status : Analyzed
Published: 2026-02-25T19:43:22.540
Modified: 2026-02-27T14:40:01.670
Link: CVE-2026-25746
No data.