Skip to content
Sök för att lära dig mer om InterSystems produkter och lösningar, karriärmöjligheter med mera.

Advisory: Cross-site Scripting Vulnerability in HealthShare Patient Index

March 1, 2022 – Advisory: Cross-site Scripting Vulnerability in HealthShare Patient Index

This issue affects HealthShare Patient Index versions 13, 14, 15.032, 2018.1, 2019.1, 2020.1 and 2020.2 and 2021.1.

A correction that addresses improper neutralization of special elements used in a command is available from the WRC as HSPI-2267.

RELATED TOPICS

Latest Alerts & Advisories

Jul 17, 2026
Primary impact is in lost time in attempting administrative activities through the GUI and in trying to identify what is causing the failure to load.
Apr 15, 2026
Advisory ID Product & Versions Affected Risk Category & Score Explicit Requirements IF-9262 InterSystems IRIS® for Health
Apr 14, 2026
Advisory ID Product & Versions Affected Risk Category & Score Explicit Requirements IF-9396 InterSystems IRIS® for Health
Apr 06, 2026
Product & Versions Affected Risk Category & Score Explicit Requirements HSIEC-12800 InterSystems IRIS® for Health
Mar 25, 2026
The 2026.1 release of InterSystems IRIS® data platform, InterSystems IRIS® for HealthTM, and HealthShare® Health Connect is now Generally Available (GA). This is an Extended Maintenance (EM) release.
Mar 18, 2026
Product & Versions Affected Risk Category & Score Explicit Requirements DP-449126 InterSystems IRIS® data platform
Mar 17, 2026
Product & Versions Affected Risk Category & Score Explicit Requirements DP-448888 Products:
Feb 26, 2026
The problem affects the following versions of HealthShare Provider Directory: