EIP-2026-119681
PRE-CVEOpenMRS 2.3 (1.11.4) - Multiple Cross-Site Scripting Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-119681. PoCs published by LiquidWorm.
AI-analyzed exploit summary The exploit demonstrates multiple stored and reflected XSS vulnerabilities in OpenMRS by providing a functional PoC HTML form that submits malicious JavaScript payloads via the 'name' and 'description' parameters. It also lists numerous other vulnerable endpoints and parameters.
Description
OpenMRS 2.3 (1.11.4) - Multiple Cross-Site Scripting Vulnerabilities
Exploits (1)
The exploit demonstrates multiple stored and reflected XSS vulnerabilities in OpenMRS by providing a functional PoC HTML form that submits malicious JavaScript payloads via the 'name' and 'description' parameters. It also lists numerous other vulnerable endpoints and parameters.