lambda-science/IMPatienT

lambda-science/IMPatienT

Releases29
Frequency1 month 2 weeks
Last Release
Stars9
IMPatienT🗂️: an integrated web application to digitize, process and explore multimodal patient data. Demo version deployed at: https://huggingface.co/spaces/corentinm7/IMPatienT

CVE History

CVEPublishedCVSS v3CVSS v2
7.6 HIGH

IMPatienT before 1.5.2 allows stored XSS via onmouseover in certain text fields within a PATCH /modify_onto request to the ontology builder. This may allow attackers to steal Protected Health Information.