Vulnerabilities > Librehealth > Librehealth EHR > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-07-15 CVE-2020-11436 Cross-site Scripting vulnerability in Librehealth EHR 2.0.0
LibreHealth EMR v2.0.0 is vulnerable to XSS that results in the ability to force arbitrary actions on behalf of other users including administrators.
network
low complexity
librehealth CWE-79
critical
9.0