The legacy user interface for OpenMRS Platform 2.x is chiefly comprised of administrative functions and the patient dashboard. Apparently, a new and more contemporary UI has been introduced via a UI framework and the legacy UI is kept around for administrative functions that are not yet implemented in the new UI. To retire the Legacy UI as planned, it is required to move the implementations and modules that still rely on it in order to maintain backwards compatibility. The main idea behind this project is to move legacy UI functions into an OpenMRS module that these implementations can install until they are able to migrate away from it, since most of the implementations of OpenMRS around the world are running OpenMRS 1.9.
Role in this project:
Security Engineer Contributions:1 review, 9 commits, 11 PRs in 1 month
Contributions summary:Anna primarily focused on addressing security vulnerabilities within the legacy UI of the OpenMRS module. Their contributions include fixing Cross-Site Scripting (XSS) vulnerabilities in various components like search fields, user roles lists, and alerts. Additionally, they implemented security patches to prevent potential exploits and improve the overall security posture of the application. They utilized the OWASP encoder for HTML encoding to mitigate XSS vulnerabilities.
backward-compatibilityopenmrsui-framework
Contributions:2 PRs, 2 pushes, 4 branches in 3 years 7 months