Loading
OpenMRS before 2.24.0 is affected by an Insecure Object Deserialization vulnerability that allows an unauthenticated user to execute arbitrary commands on the targeted system via crafted XML data in a request body.
Use CWE-502, Openmrs vendor hub and Openmrs product page to widen CVE-2018-19276 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-43094, CVE-2025-25928 and CVE-2022-23612 for nearby disclosures in the same product family.