Vulnerability Monitor

The vendors, products, and vulnerabilities you care about
openemr Vendor: open-emr

About This Product

openemr is a software product offered by open-emr. This product is widely deployed in production environments, making vulnerability monitoring essential for organizations relying on it. Security vulnerabilities in products of this category can affect system availability, data confidentiality, and integrity across entire networks. The significant number of reported vulnerabilities indicates this product has received substantial security scrutiny and community focus over time. Regular assessment of known vulnerabilities and timely patching are fundamental components of responsible system administration for any deployment of this software.

Vulnerability Landscape Summary

SecUtils has identified 145 known vulnerabilities affecting open-emr openemr. This includes 10 critical-severity issues and 60 high-severity issues that warrant immediate attention. Vulnerabilities in this product have been disclosed spanning from 2012 to 2026, indicating a sustained research interest and ongoing security attention. 73 medium-severity issues and 2 low-severity issues complete the vulnerability landscape. Organizations should prioritize patching based on deployment context, asset criticality, and exploitation likelihood rather than severity alone.

Known Vulnerabilities
ID Date Published Last Modified Severity (CVSSv3) Severity (CVSSv2) Exploit Available
CVE-2011-5160 2012-09-09 2025-04-11 - 4.3 Likely
CVE-2011-5161 2012-09-09 2025-04-11 - 6.8 Likely
CVE-2012-2115 2012-09-09 2025-04-11 - 7.5 Likely
CVE-2013-4619 2013-08-09 2025-04-11 - 6.5 Likely
CVE-2013-4620 2013-08-09 2025-04-11 - 4.3 Likely
CVE-2014-5462 2014-12-08 2025-04-12 - 6.5 Likely
CVE-2015-4453 2015-07-05 2025-04-12 - 5.0 Likely
CVE-2017-6394 2017-03-02 2025-04-20 6.1 4.3 Likely
CVE-2017-9380 2017-06-02 2025-04-20 8.8 6.5 Likely
CVE-2017-12064 2017-08-01 2025-04-20 7.5 5.0 Likely
CVE-2017-16540 2017-11-04 2025-04-20 7.5 5.0 Likely
CVE-2017-1000240 2017-11-17 2025-04-20 5.4 3.5 Unknown
CVE-2017-1000241 2017-11-17 2025-04-20 8.1 6.5 Likely
CVE-2018-1000019 2018-02-09 2024-11-21 8.8 9.0 Likely
CVE-2018-1000020 2018-02-09 2024-11-21 6.1 4.3 Likely
CVE-2018-10571 2018-04-30 2024-11-21 6.1 4.3 Likely
CVE-2018-10572 2018-04-30 2024-11-21 6.5 5.5 Likely
CVE-2018-10573 2018-04-30 2024-11-21 8.8 6.5 Likely
CVE-2018-9250 2018-05-18 2024-11-21 8.8 6.5 Likely
CVE-2018-15139 2018-08-13 2024-11-21 8.8 6.5 Likely
CVE-2018-15140 2018-08-13 2024-11-21 6.5 4.0 Likely
CVE-2018-15141 2018-08-13 2024-11-21 6.5 5.5 Likely
CVE-2018-15142 2018-08-13 2024-11-21 8.8 6.5 Likely
CVE-2018-15143 2018-08-13 2024-11-21 9.8 7.5 Likely
CVE-2018-15144 2018-08-13 2024-11-21 8.8 6.5 Likely
CVE-2018-15145 2018-08-13 2024-11-21 9.8 7.5 Likely
CVE-2018-15146 2018-08-15 2024-11-21 8.8 6.5 Likely
CVE-2018-15147 2018-08-15 2024-11-21 8.8 6.5 Likely
CVE-2018-15148 2018-08-15 2024-11-21 8.8 6.5 Likely
CVE-2018-15149 2018-08-15 2024-11-21 8.8 6.5 Likely
CVE-2018-15150 2018-08-15 2024-11-21 8.8 6.5 Likely
CVE-2018-15151 2018-08-15 2024-11-21 8.8 6.5 Likely
CVE-2018-15152 2018-08-15 2024-11-21 9.1 6.4 Likely
CVE-2018-15153 2018-08-15 2024-11-21 8.8 6.5 Likely
CVE-2018-15154 2018-08-15 2024-11-21 8.8 6.5 Likely
CVE-2018-15155 2018-08-15 2024-11-21 8.8 6.5 Likely
CVE-2018-15156 2018-08-15 2024-11-21 8.8 6.5 Likely
CVE-2018-1000218 2018-08-20 2024-11-21 5.4 3.5 Unknown
CVE-2018-1000219 2018-08-20 2024-11-21 5.4 3.5 Unknown
CVE-2018-18035 2019-04-02 2024-11-21 6.1 4.3 Likely
CVE-2018-17179 2019-05-17 2024-11-21 9.8 7.5 Likely
CVE-2018-17180 2019-05-17 2024-11-21 5.3 5.0 Likely
CVE-2018-17181 2019-05-17 2024-11-21 9.8 7.5 Likely
CVE-2019-14529 2019-08-02 2024-11-21 9.8 7.5 Likely
CVE-2019-14530 2019-08-13 2024-11-21 8.8 6.0 Unknown
CVE-2019-3963 2019-08-20 2024-11-21 6.1 4.3 Likely
CVE-2019-3964 2019-08-20 2024-11-21 6.1 4.3 Likely
CVE-2019-3965 2019-08-20 2024-11-21 6.1 4.3 Likely
CVE-2019-3966 2019-08-20 2024-11-21 6.1 4.3 Likely
CVE-2019-3967 2019-08-20 2024-11-21 6.5 4.0 Likely
CVE-2019-3968 2019-08-20 2024-11-21 8.8 9.0 Likely
CVE-2019-8371 2019-09-16 2024-11-21 7.2 9.0 Likely
CVE-2019-8368 2019-09-16 2024-11-21 6.1 4.3 Likely
CVE-2019-17179 2019-10-04 2024-11-21 6.1 4.3 Likely
CVE-2019-17197 2019-10-05 2024-11-21 9.8 7.5 Likely
CVE-2019-16862 2019-10-21 2024-11-21 6.1 4.3 Likely
CVE-2019-17409 2019-10-21 2024-11-21 6.1 4.3 Likely
CVE-2019-16404 2019-10-21 2024-11-21 8.8 6.5 Likely
CVE-2018-16795 2020-12-31 2024-11-21 8.8 6.8 Likely
CVE-2020-19364 2021-01-20 2024-11-21 8.8 6.5 Likely
CVE-2020-13569 2021-01-28 2024-11-21 8.8 6.8 Likely
CVE-2020-13562 2021-02-01 2024-11-21 6.1 4.3 Likely
CVE-2020-13563 2021-02-01 2024-11-21 6.1 4.3 Likely
CVE-2020-13564 2021-02-01 2024-11-21 6.1 4.3 Likely
CVE-2020-36243 2021-02-07 2024-11-21 8.8 9.0 Likely
CVE-2020-13565 2021-02-10 2024-11-21 6.1 5.8 Likely
CVE-2020-29142 2021-02-15 2024-11-21 7.2 6.5 Likely
CVE-2020-29139 2021-02-15 2024-11-21 7.2 6.5 Likely
CVE-2020-29140 2021-02-15 2024-11-21 7.2 6.5 Likely
CVE-2020-29143 2021-02-15 2024-11-21 7.2 6.5 Likely
CVE-2021-25917 2021-03-22 2025-04-30 4.8 3.5 Unknown
CVE-2021-25918 2021-03-22 2025-04-30 4.8 3.5 Unknown
CVE-2021-25919 2021-03-22 2025-04-30 4.8 3.5 Unknown
CVE-2021-25920 2021-03-22 2025-04-30 6.5 5.5 Likely
CVE-2021-25921 2021-03-22 2025-04-30 5.4 3.5 Unknown
CVE-2021-25922 2021-03-22 2024-11-21 6.1 4.3 Likely
CVE-2020-13566 2021-04-13 2024-11-21 8.8 6.5 Likely
CVE-2020-13568 2021-04-13 2024-11-21 8.8 6.5 Likely
CVE-2021-32101 2021-05-07 2024-11-21 8.2 6.4 Likely
CVE-2021-32102 2021-05-07 2024-11-21 8.8 6.5 Likely
CVE-2021-32103 2021-05-07 2024-11-21 4.8 3.5 Unknown
CVE-2021-32104 2021-05-07 2024-11-21 8.8 6.5 Likely
CVE-2021-25923 2021-06-24 2024-11-21 8.1 6.8 Likely
CVE-2021-40352 2021-09-01 2024-11-21 6.5 4.0 Likely
CVE-2021-41843 2021-12-17 2024-11-21 6.5 6.8 Likely
CVE-2022-25471 2022-03-03 2024-11-21 8.1 5.5 Likely
CVE-2022-25041 2022-03-23 2024-11-21 4.3 4.0 Likely
CVE-2022-24643 2022-03-25 2024-11-21 5.4 3.5 Unknown
CVE-2022-1177 2022-03-30 2024-11-21 4.3 4.0 Likely
CVE-2022-1178 2022-03-30 2024-11-21 5.4 3.5 Unknown
CVE-2022-1179 2022-03-30 2024-11-21 5.4 3.5 Unknown
CVE-2022-1180 2022-03-30 2024-11-21 3.5 3.5 Unknown
CVE-2022-1181 2022-03-30 2024-11-21 5.4 3.5 Unknown
CVE-2020-13567 2022-04-18 2024-11-21 9.8 7.5 Likely
CVE-2022-1458 2022-04-25 2024-11-21 5.4 3.5 Unknown
CVE-2022-1459 2022-04-25 2024-11-21 8.3 5.5 Likely
CVE-2022-1461 2022-04-25 2024-11-21 6.5 4.0 Likely
CVE-2022-2493 2022-07-22 2024-11-21 8.1 - -
CVE-2022-2494 2022-07-22 2024-11-21 5.4 - -
CVE-2022-2729 2022-08-09 2024-11-21 5.4 - -
CVE-2022-2730 2022-08-09 2024-11-21 6.5 - -
CVE-2022-2731 2022-08-09 2024-11-21 6.1 - -
CVE-2022-2732 2022-08-09 2024-11-21 8.3 - -
CVE-2022-2733 2022-08-09 2024-11-21 6.1 - -
CVE-2022-2734 2022-08-09 2024-11-21 5.4 - -
CVE-2022-2824 2022-08-15 2024-11-21 8.8 - -
CVE-2022-4502 2022-12-15 2024-11-21 6.1 - -
CVE-2022-4503 2022-12-15 2024-11-21 6.1 - -
CVE-2022-4504 2022-12-15 2024-11-21 7.5 - -
CVE-2022-4505 2022-12-15 2024-11-21 8.8 - -
CVE-2022-4506 2022-12-15 2024-11-21 8.8 - -
CVE-2022-4567 2022-12-17 2024-11-21 8.1 - -
CVE-2022-4615 2022-12-19 2024-11-21 6.1 - -
CVE-2022-4733 2022-12-27 2024-11-21 4.8 - -
CVE-2023-22972 2023-02-22 2024-11-21 5.4 - -
CVE-2023-22973 2023-02-22 2024-11-21 8.8 - -
CVE-2023-22974 2023-02-22 2024-11-21 7.5 - -
CVE-2023-2566 2023-05-08 2024-11-21 4.8 - -
CVE-2023-2674 2023-05-12 2024-11-21 4.3 - -
CVE-2023-2942 2023-05-27 2024-11-21 8.1 - -
CVE-2023-2943 2023-05-27 2024-11-21 8.8 - -
CVE-2023-2944 2023-05-27 2024-11-21 5.4 - -
CVE-2023-2945 2023-05-27 2024-11-21 5.4 - -
CVE-2023-2946 2023-05-27 2024-11-21 8.1 - -
CVE-2023-2947 2023-05-27 2024-11-21 4.8 - -
CVE-2023-2948 2023-05-28 2024-11-21 6.1 - -
CVE-2023-2949 2023-05-28 2024-11-21 6.1 - -
CVE-2023-2950 2023-05-28 2024-11-21 8.1 - -
CVE-2024-26476 2024-02-28 2025-05-13 3.5 - -
CVE-2024-37734 2024-06-26 2025-05-01 9.8 - -
CVE-2024-0875 2024-11-15 2024-11-19 4.8 - -
CVE-2025-29789 2025-03-25 2025-05-06 7.5 - -
CVE-2025-29772 2025-03-31 2025-05-13 6.1 - -
CVE-2025-30149 2025-03-31 2025-04-30 6.4 - -
CVE-2025-30161 2025-03-31 2025-05-13 5.4 - -
CVE-2025-31117 2025-03-31 2025-04-30 7.5 - -
CVE-2025-31121 2025-04-01 2025-05-07 5.4 - -
CVE-2024-22611 2025-04-03 2025-04-08 9.8 - -
CVE-2025-32794 2025-05-23 2025-07-02 7.6 - -
CVE-2025-32967 2025-05-23 2025-07-02 5.4 - -
CVE-2025-43860 2025-05-23 2025-07-02 7.6 - -
CVE-2013-10044 2025-08-01 2025-11-26 8.8 - -
CVE-2021-47817 2026-01-21 2026-02-02 5.4 - -
CVE-2025-54373 2026-01-28 2026-02-12 6.5 - -
CVE-2025-67645 2026-01-28 2026-02-12 8.8 - -

How SecUtils Interprets Product Data

SecUtils normalizes and enriches National Vulnerability Database (NVD) records for open-emr openemr by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and structuring the data for rapid analysis and asset correlation. For every vulnerability listed, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference information to enable organizations to prioritize patching and risk assessment efficiently. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for vulnerability management and security operations.