In LibreHealth EHR 2.0.0, lack of sanitization of the GET parameters debug and InsId in interface\billing\sleobprocess.php leads to multiple cross-site scripting (XSS) vulnerabilities.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-29939.json"