Home/Product/orthanc server orthanc
Product

orthanc server orthanc

12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-5445
< 1.12.11
An out-of-bounds read vulnerability exists in the DecodeLookupTable function within DicomImageDecoder.cpp. The lookup-table de
9.1CRITICAL
CVE-2026-5444
< 1.12.11
A heap buffer overflow vulnerability exists in the PAM image parsing logic. When Orthanc processes a crafted PAM image embedded in
7.1HIGH
CVE-2026-5443
< 1.12.11
A heap buffer overflow vulnerability exists during the decoding of PALETTE COLOR DICOM images. Pixel length validation uses 32-b
9.8CRITICAL
CVE-2026-5442
< 1.12.11
A heap buffer overflow vulnerability exists in the DICOM image decoder. Dimension fields are encoded using Value Representation (V
9.8CRITICAL
CVE-2026-5441
< 1.12.11
An out-of-bounds read vulnerability exists in the DecodePsmctRle1 function of DicomImageDecoder.cpp. The PMSCT_RLE1 decompre
7.1HIGH
CVE-2026-5440
< 1.12.11
A memory exhaustion vulnerability exists in the HTTP server due to unbounded use of the Content-Length header. The server alloc
7.5HIGH
CVE-2026-5439
< 1.12.11
A memory exhaustion vulnerability exists in ZIP archive processing. Orthanc automatically extracts ZIP archives uploaded to certai
7.5HIGH
CVE-2026-5438
< 1.12.11
A gzip decompression bomb vulnerability exists when Orthanc processes HTTP request with Content-Encoding: gzip. The server does
7.5HIGH
CVE-2026-5437
< 1.12.11
An out-of-bounds read vulnerability exists in DicomStreamReader during DICOM meta-header parsing. When processing malformed meta
7.5HIGH
CVE-2025-0896
< 1.5.8
Orthanc server prior to version 1.5.8 does not enable basic authentication by default when remote access is enabled. This could re
9.8CRITICAL
CVE-2024-22725
< 1.12.2
Orthanc versions before 1.12.2 are affected by a reflected cross-site scripting (XSS) vulnerability. The vulnerability was present
6.1MEDIUM
CVE-2023-33466
< 1.12.0
Orthanc before 1.12.0 allows authenticated users with access to the Orthanc API to overwrite arbitrary files on the file system, a
8.8HIGH
threatengine.sh