cleantalk
Vulnerabilities and Security Researches

KiviCare – Clinic & Patient Management System (EHR), CVE-2026-42735

CVE, Research URL

CVE-2026-42735

Published on
May 27, 2026
Research Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in Iqonic Design KiviCare kivicare-clinic-management-system allows Password Recovery Exploitation.This issue affects KiviCare: from n/a through <= 4.3.0.
Affected versions
max 4.4.0.
Status
vulnerable