The U.S. Food and Drug Administration issued a Class 2 recall for certain GE HealthCare Centricity Universal Viewer medical imaging products after identifying a cybersecurity vulnerability that could expose user login credentials on a local client workstation. The flaw could allow an unauthorized person to manipulate data or affect system availability, although GE said exploitation requires direct physical access to the affected workstation and that no unauthorized access to patient data has been reported.
GE HealthCare said the issue was discovered during routine testing and that customers were notified through an urgent medical device correction letter. While the company prepares a permanent fix, it has advised healthcare organizations to maintain appropriate workstation security controls and use Active Directory-based network account authentication. GE said it will remediate all affected products at no cost.

See the actors and campaigns active against you right now.
3 events from the most recent confirmed update back to the earliest known activity.
On March 19, 2026, the U.S. Food and Drug Administration posted a Class 2 recall notice for certain GE HealthCare Centricity Universal Viewer products due to the cybersecurity vulnerability. GE said no unauthorized access to patient data had been reported.
On Jan. 30, GE HealthCare sent customers an urgent medical device correction letter about the affected products. The company advised customers to maintain workstation security controls and use Active Directory-based network account authentication while it prepares a permanent fix at no cost.
GE HealthCare said it discovered a cybersecurity vulnerability in certain Centricity Universal Viewer medical imaging products during routine testing. The flaw could expose user login credentials on a local client workstation and could allow unauthorized data manipulation or affect system availability if someone had direct physical access.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See the adversaries and campaigns active against your sector right now, ranked by what they're exploiting.
3 references tracked. Mallory keeps watching after this page renders.
hipaajournal.com
Open sourcebankinfosecurity.com
Open sourcegovinfosecurity.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.