What is CVE-2026-50577?
A vulnerability in ePA 3.x Integration involves the request_counter remaining unchanged during VAU message construction, affecting the authorization workflow. This impacts writing Medical Information Objects to Germany's electronic patient record. Users should update to version 1.3.0 or later to mitigate the issue.
Azərbaycanca: ePA 3.x Integration alətində VAU mesajlarının qurulması zamanı request_counter-in dəyişdirilməməsi səbəbindən avtorizasiya axını zəifliyi aşkarlanıb. Bu, Almaniyanın elektron xəstə qeydlərinə tibbi məlumat obyektlərinin yazılmasına təsir göstərə bilər. Versiya 1.3.0-a qədər olan sistemlərdə problemi aradan qaldırmaq üçün yeniləmə tətbiq edilməlidir.
FAQ2
Which mechanism in ePA 3.x Integration is affected by CVE-2026-50577?
The vulnerability affects the authorization workflow because the request_counter remains unchanged during VAU message construction.
Which version should users update to in order to mitigate CVE-2026-50577?
Users should update to version 1.3.0 or later to mitigate the issue.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.