Products: 2
    Vulnerabilities: 6
    Known Exploited: 0
    0
    Critical Level Threats
    2
    High Level Threats
    4
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-24363

    The HL7 FHIR IG publisher may potentially expose GitHub repo user and credential information

    Last Modified: Apr 15, 2026
    Published: Jan 24, 2025

    CVE-2024-52807

    XXE vulnerability in XSLT parsing in `org.hl7.fhir.publisher`

    Last Modified: Apr 15, 2026
    Published: Jan 24, 2025

    CVE-2023-24057

    HL7 (Health Level 7) FHIR Core Libraries before 5.6.92 allow attackers to extract files into arbitrary directories via directory traversal from a crafted ZIP or TGZ archive (for a prepackaged terminology cache, NPM package, or comparison archive).

    Last Modified: Apr 01, 2025
    Published: Jan 24, 2023

    CVE-2014-3861

    Cross-site scripting (XSS) vulnerability in CDA.xsl in HL7 C-CDA 1.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted reference element within a nonXMLBody element.

    Last Modified: Apr 12, 2025
    Published: Sep 02, 2014

    CVE-2014-3862

    CDA.xsl in HL7 C-CDA 1.1 and earlier allows remote attackers to discover potentially sensitive URLs via a crafted reference element that triggers creation of an IMG element with an arbitrary URL in its SRC attribute, leading to information disclosure in a Referer log.

    Last Modified: Apr 12, 2025
    Published: Sep 02, 2014
    Items Per Page