CVE-2026-76614
Last modified
CVE-2026-76614 is a medium-severity vulnerability rated 4.3/10 on the CVSS scale. OpenEMR before 8.3.0 contains a path traversal vulnerability in the EDI archive restore function. The archrestore_sel POST parameter is passed to the archive restore handler without sanitization for path traversal sequences. EPSS estimates a 0.27% chance of exploitation in the next 30 days.
Description
OpenEMR before 8.3.0 contains a path traversal vulnerability in the EDI archive restore function. The archrestore_sel POST parameter is passed to the archive restore handler without sanitization for path traversal sequences. The handler checks whether the supplied path exists on the filesystem, and the differing response messages leak whether the target path exists. An authenticated user with EOB Data Entry permissions can probe arbitrary filesystem paths on the server to determine file existence.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| openemr | openemr | < 8.3.0 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-76614?
How severe is CVE-2026-76614?
How do I fix CVE-2026-76614?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-76609Joomla Extension - fabrikar.com - Unauthenticated modificati…6.9
- CVE-2026-7661The Bootstrap Shortcode plugin for WordPress is vulnerable t…6.4
- CVE-2026-76610Joomla Extension - yootheme.com - Unauthenticated tag modifi…6.9
- CVE-2026-76611Joomla Extension - yootheme.com - Unauthenticated arbitrary …6.9
- CVE-2026-76612Joomla Extension - yootheme.com - Unauthenticated stored XSS…8.6
- CVE-2026-76613Joomla Extension - yootheme.com - Authenticated, privileged …8.6
- CVE-2026-7662The ePaperFlip Publisher plugin for WordPress is vulnerable …6.4
- CVE-2026-7663IBM Langflow OSS 1.0.0 through 1.9.6 could allow unauthentic…9.8
- CVE-2026-76632Rejected reason: This CVE ID has been rejected or withdrawn …
- CVE-2026-76633WeGIA before 3.9.2 contains an authorization bypass vulnerab…8.1
- CVE-2026-76634WeGIA before 3.9.2 contains an insecure direct object refere…6.5
- CVE-2026-76635baserCMS before 5.3.0 contains a SQL injection vulnerability…7.2
Are you affected by CVE-2026-76614?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
