Home

Description

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, an authorization bypass vulnerability in the patient portal signature endpoint allows authenticated portal users to upload and overwrite provider signatures by setting `type=admin-signature` and specifying any provider user ID. This could potentially lead to signature forgery on medical documents, legal compliance violations, and fraud. The issue occurs when portal users are allowed to modify provider signatures without proper authorization checks. Version 8.0.0 fixes the issue.

PUBLISHED Reserved 2026-01-27 | Published 2026-02-25 | Updated 2026-02-26 | Assigner GitHub_M




HIGH: 8.1CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Problem types

CWE-285: Improper Authorization

Product status

< 8.0.0
affected

References

github.com/...penemr/security/advisories/GHSA-xc8x-mfh8-9xvh exploit

github.com/...penemr/security/advisories/GHSA-xc8x-mfh8-9xvh

github.com/...ommit/a29c0f7ac0975429a85cd09a3ff12ee0dcdb4478

cve.org (CVE-2026-24890)

nvd.nist.gov (CVE-2026-24890)

Download JSON