CVE-2026-9356 – Hospitals Patient Records Management System

CVSS 7.3 IMPORTANT

“Patient record systems become urgent risks when public exploit code targets their data controls.”

SourceCodester released patches for two high-severity vulnerabilities affecting Hospitals Patient Records Management System. CVE-2026-9355 has a CVSS score of 7.3, which is High severity. CVE-2026-9356 has a CVSS score of 7.3, which is High severity.

The vulnerabilities involve injection weaknesses that could expose affected healthcare record systems to unauthorized database actions. Public proof-of-concept code is available for both issues. The update strengthens input handling and reduces the risk of attackers abusing patient record workflows.

Key Details

Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
CWE Classification
CWE-74
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.