First published: Sat May 27 2023(Updated: )
Code Injection in GitHub repository openemr/openemr prior to 7.0.1.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Open-emr Openemr | <7.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-2943 is high (8.8).
CVE-2023-2943 allows code injection in the openemr/openemr repository prior to version 7.0.1.
To fix CVE-2023-2943 in your GitHub repository, update openemr/openemr to version 7.0.1 or later.
You can find more information about CVE-2023-2943 in the following references: [GitHub commit](https://github.com/openemr/openemr/commit/c1c0805696ca68577c37bf30e29f90e5f3e0f1a9) and [Huntr bounty](https://huntr.dev/bounties/4190f944-dc2c-4624-9abf-31479456faa9).
The Common Weakness Enumeration (CWE) ID for CVE-2023-2943 is 94.