Skip to content
Telusuri untuk mempelajari tentang produk dan solusi InterSystems, peluang karier, dan banyak lagi.

Advisory: Cross-site Scripting Vulnerability in HealthShare Patient Index

March 1, 2022 – Advisory: Cross-site Scripting Vulnerability in HealthShare Patient Index

This issue affects HealthShare Patient Index versions 13, 14, 15.032, 2018.1, 2019.1, 2020.1 and 2020.2 and 2021.1.

A correction that addresses improper neutralization of special elements used in a command is available from the WRC as HSPI-2267.

RELATED TOPICS

Latest Alerts & Advisories

23 July, 2026
The 2026.2 release of InterSystems IRIS® data platform, InterSystems IRIS® for Health™, and HealthShare® Health Connect is now Generally Available (GA). This is a Continuous Delivery (CD) release.
17 July, 2026
Primary impact is in lost time in attempting administrative activities through the GUI and in trying to identify what is causing the failure to load.
16 April, 2026
Advisory ID Product & Versions Affected Risk Category & Score Explicit Requirements IF-9262 InterSystems IRIS® for Health
15 April, 2026
Advisory ID Product & Versions Affected Risk Category & Score Explicit Requirements IF-9396 InterSystems IRIS® for Health
06 April, 2026
Product & Versions Affected Risk Category & Score Explicit Requirements HSIEC-12800 InterSystems IRIS® for Health
26 March, 2026
The 2026.1 release of InterSystems IRIS® data platform, InterSystems IRIS® for HealthTM, and HealthShare® Health Connect is now Generally Available (GA). This is an Extended Maintenance (EM) release.
18 March, 2026
Product & Versions Affected Risk Category & Score Explicit Requirements DP-449126 InterSystems IRIS® data platform
17 March, 2026
Product & Versions Affected Risk Category & Score Explicit Requirements DP-448888 Products:
27 February, 2026
The problem affects the following versions of HealthShare Provider Directory: