CVE-2026-24908 — OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, an SQL injection vulnerability in the Patient REST API endpoint allows — CVE Database · The Intelligence Room