openid connect token leak

  1. CVE-2026-12473 OHIF Viewer Token Leak via Crafted Links: Patch 3.12.2+

    CISA published an Industrial Control Systems medical advisory on June 25, 2026, warning that OHIF Viewers DICOM framework versions up to and including 3.12.0 can leak an authenticated clinician’s OIDC bearer token through crafted links in certain custom integrations. The flaw, tracked as...