Skip to content
Keressen, hogy többet megtudjon az InterSystems termékeiről és megoldásairól, karrierlehetőségekről és még sok másról.

Advisory: OAuth Processing Errors with FHIR Pagination

This problem affects the following products:

  • HealthShare Unified Care Record 2020.1, 2020.2, 2021.1
  • InterSystems IRIS for Health 2020.1, 2020.1.1, 2020.2, 2020.3, 2021.1, 2021.2

If a FHIR query response is paginated, the system does not properly handle OAuth tokens on subsequent pages. The behavior varies by product:

  • When using the FHIR Gateway in the HealthShare ODS, an initial search response functions as expected. If the result set breaks across pages, attempts to resolve the “next” URL for the next page of search results will yield a HTTP 403 error.
  • When using the FHIR Repository in InterSystems IRIS for Health, an initial search response functions as expected. If the result set breaks across pages, attempts to resolve the “next” URL for the next page of search results will succeed if the user has a valid Access Token however, OAuth scopes are not correctly validated.

To resolve this issue, please request an adhoc patch for IF-2575 from the Worldwide Response Center (WRC).

Latest Alerts & Advisories

Apr 17, 2025
InterSystems has addressed security vulnerabilities that impact applications using OAuth2 Client configurations on InterSystems IRIS, InterSystems IRIS for Health, HealthShare, HealthShare HealthConnect, TrakCare, Caché, and Ensemble. Remediation steps and additional guidance documentation are available from the InterSystems Worldwide Response Center (WRC).
Apr 02, 2025
Product & Versions Affected Explicit Requirements DP-439207 InterSystems IRIS® data platform 2024.3 (AIX) AIX installations Using JSON processing and Unicode non-Latin-1 character sets DP-439280 InterSystems IRIS 2024.3 (containers with IntegratedML) IntegratedML Containers using TensorFlow
Mar 04, 2025
This problem affects the following products:
Mar 04, 2025
This problem affects the following products: