CVE-2026-25146 | OpenEMR up to 7.x gateway_api_key information disclosure (GHSA-2hq8-wc73-jvvq)
A vulnerability classified as problematic was found in OpenEMR up to 7.x. This affects an unknown function. The manipulation of the argument gateway_api_key results in information disclosure.
This vulnerability is reported as CVE-2026-25146. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.