Found 3 security vulnerabilities

Hello Team,

I have identified three vulnerabilities that deserve attention, and would like to responsibly disclose them, as these affect all deployments of the software. I have already sent an email to the security contact listed in the Github security details. Additionally, I have created three different security advisories for all the vulnerabilities identified, which need to be triaged. Please advise on how to proceed.

Thank you

OpenEMR Security Team

Thank you for reporting this to the OpenEMR Security Team, and for using the private advisory channel.

For a status update — or if you need to reach us about this — please add a comment there in the advisory and we’ll respond.

Thanks for your contribution to OpenEMR and your patience with this process.