CVE-2026-67611CWE-308

CVE-2026-67611

High · published August 3, 2026

CVSS v3.1
8.1
EPSS
1%
Percentile
42.8
In the wild
Unconfirmed
What it is

OpenEMR through 8.2.0 contains an authentication bypass vulnerability that allows attackers with valid credentials to circumvent multi-factor authentication by exploiting the exposed OAuth2 password grant flow through an unauthenticated client registration endpoint. Attackers can register an OAuth2 client via the unauthenticated registration endpoint and use the password grant to exchange credentials for an API access token, bypassing the normal web interface authentication and any enforced multi-factor authentication controls.

The record
Technical detail
CVSS v3.1
8.1 · HIGH
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
CVSS v4.0
Not supplied
EPSS
0.00528 · 42.8th percentile
Weakness
CWE-308 · Use of Single-factor Authentication
Published
2026-08-03T21:16Z
Affected products (1)
ProductVersionsFixed in
open-emr/openemr≤ 8.2.0
References (2)
EPSS history
Timeline
  • 03 AUG 16:04Z
    OpenEMR 8.2.0 OAuth2 Password Grant Authentication Bypass via SMART Configuration
    cvelistv5