CVE-2026-24487 | OpenEMR up to 7.x FHIR CareTeam Resource Endpoint FhirCareTeamService information disclosure (GHSA-4frq-f657-hwrc)
A vulnerability was found in OpenEMR up to 7.x. It has been declared as problematic. Impacted is the function FhirCareTeamService of the component FHIR CareTeam Resource Endpoint. Executing a manipulation can lead to information disclosure.
This vulnerability is handled as CVE-2026-24487. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.