Ca.uhn.hapi.fhir:org.hl7.fhir.validation
This hub aggregates every CVE we track for Ca.uhn.hapi.fhir:org.hl7.fhir.validation, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
6
CVEs tracked
1
Critical
4
High
0
In CISA KEV
Severity distribution
HIGH4MEDIUM1CRITICAL1
Monthly trend
0
1
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
3
0
2024-102026-09
Latest CVEs
The 6 most recently published vulnerabilities affecting Ca.uhn.hapi.fhir:org.hl7.fhir.validation.
- CVE-2026-62296HAPI FHIR: XHTML narrative parser unbounded recursion causes StackOverflow denial of service7.5
- CVE-2026-62295HAPI FHIR: JSON utility parser unbounded recursion causes StackOverflow denial of service7.5
- CVE-2026-62293HAPI FHIR: Stored XSS in scan report via unescaped IG and profile titles5.0
- CVE-2024-51132An XML External Entity (XXE) vulnerability in HAPI FHIR before v6.4.0 allows attackers to access sensitive information or execute arbitrary code via supplying a crafted request containing malicious...9.8
- CVE-2023-28465The package-decompression feature in HL7 (Health Level 7) FHIR Core Libraries before 5.6.106 allows attackers to copy arbitrary files to certain directories via directory traversal, if an allowed d...7.5
- CVE-2023-24057HL7 (Health Level 7) FHIR Core Libraries before 5.6.92 allow attackers to extract files into arbitrary directories via directory traversal from a crafted ZIP or TGZ archive (for a prepackaged termi...8.1
Product normalization is registry-driven with AI assist and human review. How it works