First published: Tue Mar 25 2025(Updated: )
OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior to 7.3.0 are vulnerable to Directory Traversal in the Load Code feature. Version 7.3.0 contains a patch for the issue.
Credit: security-advisories@github.com
Affected Software | Affected Version | How to fix |
---|---|---|
<7.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-29789 is classified as a high severity vulnerability due to its potential to allow unauthorized file access.
To fix CVE-2025-29789, upgrade your OpenEMR application to version 7.3.0 or later.
CVE-2025-29789 can allow attackers to perform directory traversal, leading to unauthorized access to sensitive files on your system.
OpenEMR versions prior to 7.3.0 are affected by CVE-2025-29789.
CVE-2025-29789 is a specific vulnerability affecting earlier versions of OpenEMR and highlights a security risk in the Load Code feature.