Server-Side Request Forgery (SSRF) in OpenEMR - CVE-2026-33321
Published: April 23, 2026
OpenEMR
Detailed vulnerability description
The vulnerability allows a remote user to perform server-side request forgery.
The vulnerability exists due to server-side request forgery in the Eye Exam PDF creation function when parsing attacker-controlled form answers as unescaped HTML during PDF generation. A remote user can submit a crafted Eye Exam form value and generate a PDF to perform server-side request forgery.
Exploitation requires an account with the Notes - my encounters role.