OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, the server does not properly validate user permission. Unauthorized users can view the information of authorized users. Version 8.0.0 fixes the issue.
Metrics
Affected Vendors & Products
References
History
Wed, 25 Feb 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, the server does not properly validate user permission. Unauthorized users can view the information of authorized users. Version 8.0.0 fixes the issue. | |
| Title | OpenEMR has Broken Access Control on Care Coordination Module | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-02-25T01:53:15.570Z
Reserved: 2026-01-29T14:03:42.540Z
Link: CVE-2026-25127
No data.
Status : Received
Published: 2026-02-25T02:16:22.820
Modified: 2026-02-25T02:16:22.820
Link: CVE-2026-25127
No data.
OpenCVE Enrichment
No data.