CVE-2025-27720: Pixmeo Osirix Md
High severity, CVSS 7.4. EPSS: 0.3% chance of exploitation in the next 30 days.
The Pixmeo Osirix MD Web Portal sends credential information without encryption, which could allow an attacker to steal credentials.
Affected products
- Pixmeo Osirix Md: up to and including 14.0.1 (Build 2024-02-28)
Published 2025-05-08. Last modified 2026-06-17.