CVE-2025-67645 | OpenEMR up to 7.0.3 Profile Edit Endpoint access control (GHSA-vjmv-cf46-gffv / CNNVD-202601-4629)
A vulnerability was found in OpenEMR up to 7.0.3. It has been declared as critical. Affected by this issue is some unknown functionality of the component Profile Edit Endpoint. The manipulation results in improper access controls.
This vulnerability is identified as CVE-2025-67645. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.