This problem affects the following products:
- HealthShare products: 2024.1, 2024.2, 2025.1, 2025.2, 2026.1
Requirements:
- Single Sign-on
When an administrative user clicks the logout button on a HealthShare Management Portal page, in some circumstances, they will not be logged out. However, upon reaching the OAuth token timeout (5 minutes, by default), the user will be logged out.
This was seen when an administrative user logged in to the HealthShare Management Portal and subsequently launched a Clinical Viewer session using IdP-Initiated SAML SSO. After logging out from the Clinical Viewer session, attempting to log out of the Management Portal session then failed, but the session successfully timed out after 5 minutes.
Clinical users are unlikely to see this issue manifest, as they do not typically have tokens for concurrent sessions on multiple OAuth clients in a HealthShare federation.
The correction for this defect is identified as HSIEO-14371, which is included in version 2026.2 of HealthShare and all future product releases. It is also available for older versions via ad hoc change file (patch) or full kit distribution by contacting the Worldwide Response Center (WRC).







































