An issue was discovered in OpenEMR before 5.0.1 Patch 7. There is SQL Injection in the maketask function in /interface/forms/eyemag/php/taskmanfunctions.php via /interface/forms/eyemag/taskman.php.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-17179.json"