VulnSea

MISP vulnerabilities

CVEs whose affected-version data names the MISP package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

162 CVEsRSS

CVE-2026-85237High· 8.1
3w ago

A vulnerability in MISP's email-based one-time password (OTP) authentication flow allowed an attacker to perform an unrestricted number of OTP verification attempts. The email_otp() endpoint did not apply brute-force protection when va…

A vulnerability in MISP's email-based one-time password (OTP) authentication flow allowed an attacker to perform an unrestricted number of OTP verification attempts. The email_otp() endpoint did not apply brute-force protection when va…

▾ Twilightmisp-project · mispEPSS 0.27%via NVD
CVE-2026-85221Critical· 9.1
3w ago

MISP contains an improper TLS certificate validation vulnerability in CurlClient

MISP contains an improper TLS certificate validation vulnerability in CurlClient. The CurlClient::$verifyPeer property was not explicitly initialized and therefore defaulted to null. When passed to cURL, this value effectively disabled T…

▾ Midnightmisp-project · mispEPSS 0.15%via NVD
CVE-2026-85239Medium· 6.5
3w ago

A vulnerability in MISP's event template handling allowed an authenticated user with permission to create or modify event templates to bypass validation of the template definition field. The EventTemplate::beforeValidate() method only p…

A vulnerability in MISP's event template handling allowed an authenticated user with permission to create or modify event templates to bypass validation of the template definition field. The EventTemplate::beforeValidate() method only p…

▾ Sunlitmisp-project · mispEPSS 0.26%via NVD
CVE-2026-85238Medium· 6.8
3w ago

MISP contains a session fixation vulnerability in the CustomAuth authentication (a custom configuration) flow

MISP contains a session fixation vulnerability in the CustomAuth authentication (a custom configuration) flow. When a user was successfully authenticated through CustomAuth, MISP stored the authenticated user identity in the existing ses…

▾ Sunlitmisp-project · mispEPSS 0.22%via NVD
CVE-2026-85230Medium· 5.4
3w ago

A persistent unsafe URL injection vulnerability exists in the MISP dashboard ButtonWidget configuration

A persistent unsafe URL injection vulnerability exists in the MISP dashboard ButtonWidget configuration. Dashboard widget URLs were validated only when the widget was rendered and were not validated when the configuration was saved. As a…

▾ Sunlitmisp-project · mispEPSS 0.17%via NVD
CVE-2026-85227Medium· 6.1
3w ago

MISP contains a reflected Cross-Site Scripting (XSS) vulnerability in the event attribute filtering query builder

MISP contains a reflected Cross-Site Scripting (XSS) vulnerability in the event attribute filtering query builder. The taggedAttributes and galaxyAttachedAttributes URL parameters were inserted into the query-builder rules without HTML e…

▾ Sunlitmisp-project · mispEPSS 0.16%via NVD
CVE-2026-85226Medium· 4.3
3w ago

MISP contains an authorization flaw in the OnDemand correlation engine where correlations were calculated solely from matching attribute values without applying the distribution, sharing group, organization, or other access-control restr…

MISP contains an authorization flaw in the OnDemand correlation engine where correlations were calculated solely from matching attribute values without applying the distribution, sharing group, organization, or other access-control restr…

▾ Sunlitmisp-project · mispEPSS 0.15%via NVD
CVE-2026-85216Critical· 9.8
3w ago

MISP contains an authentication bypass vulnerability in its LDAP and LinOTP authentication components due to insufficient validation of user-supplied credentials. The custom LdapAuthenticate and LinOTPAuthenticate components replace Cak…

MISP contains an authentication bypass vulnerability in its LDAP and LinOTP authentication components due to insufficient validation of user-supplied credentials. The custom LdapAuthenticate and LinOTPAuthenticate components replace Cak…

▾ Midnightmisp-project · mispEPSS 0.50%via NVD
CVE-2026-85236High· 8.8
3w ago

A cross-site request forgery (CSRF) vulnerability existed in the cullEmptyEvents action of MISP

A cross-site request forgery (CSRF) vulnerability existed in the cullEmptyEvents action of MISP. The endpoint performed a state-changing and irreversible operation while accepting HTTP GET requests. Because bodyless GET requests are no…

▾ Twilightmisp-project · mispEPSS 0.18%via NVD
CVE-2025-67906Medium· 5.4PoC
9mo ago

In MISP before 2.5.28, app/View/Elements/Workflows/executionPath.ctp allows XSS in the workflow execution path.

In MISP before 2.5.28, app/View/Elements/Workflows/executionPath.ctp allows XSS in the workflow execution path.

▾ Twilightmisp-project · mispEPSS 0.33%via NVD
CVE-2024-58130High· 7.2
1y ago

In app/Controller/Component/RestResponseComponent.php in MISP before 2.4.193, REST endpoints have a lack of sanitization for non-JSON responses.

In app/Controller/Component/RestResponseComponent.php in MISP before 2.4.193, REST endpoints have a lack of sanitization for non-JSON responses.

▾ Twilightmisp-project · mispEPSS 0.23%via NVD
CVE-2024-58129Medium· 5.5
1y ago

In MISP before 2.4.193, menu_custom_right_link_html parameters can be set via the UI (i.e., without using the CLI) and thus attackers with admin privileges can conduct XSS attacks against every page.

In MISP before 2.4.193, menu_custom_right_link_html parameters can be set via the UI (i.e., without using the CLI) and thus attackers with admin privileges can conduct XSS attacks against every page.

▾ Sunlitmisp-project · mispEPSS 0.22%via NVD
CVE-2024-58128Medium· 5.5
1y ago

In MISP before 2.4.193, menu_custom_right_link parameters can be set via the UI (i.e., without using the CLI) and thus attackers with admin privileges can conduct XSS attacks via a global menu link.

In MISP before 2.4.193, menu_custom_right_link parameters can be set via the UI (i.e., without using the CLI) and thus attackers with admin privileges can conduct XSS attacks via a global menu link.

▾ Sunlitmisp-project · mispEPSS 0.22%via NVD
CVE-2024-57969Medium· 4.3
1y ago

app/Model/Attribute.php in MISP before 2.4.198 ignores an ACL during a GUI attribute search.

app/Model/Attribute.php in MISP before 2.4.198 ignores an ACL during a GUI attribute search.

▾ Sunlitmisp-project · mispEPSS 0.26%via NVD
CVE-2024-46918Medium· 4.9
2y ago

app/Controller/UserLoginProfilesController.php in MISP before 2.4.198 does not prevent an org admin from viewing sensitive login fields of another org admin in the same org.

app/Controller/UserLoginProfilesController.php in MISP before 2.4.198 does not prevent an org admin from viewing sensitive login fields of another org admin in the same org.

▾ Sunlitmisp-project · mispEPSS 0.44%via NVD
CVE-2024-45509Medium· 6.5
2y ago

In MISP through 2.4.196, app/Controller/BookmarksController.php does not properly restrict access to bookmarks data in the case where the user is not an org admin.

In MISP through 2.4.196, app/Controller/BookmarksController.php does not properly restrict access to bookmarks data in the case where the user is not an org admin.

▾ Sunlitmisp-project · mispEPSS 0.40%via NVD
CVE-2024-29859Critical· 9.8
2y ago

In MISP before 2.4.187, add_misp_export in app/Controller/EventsController.php does not properly check for a valid file upload.

In MISP before 2.4.187, add_misp_export in app/Controller/EventsController.php does not properly check for a valid file upload.

▾ Midnightmisp-project · mispEPSS 0.82%via NVD
CVE-2024-29858Critical· 9.8
2y ago

In MISP before 2.4.187, __uploadLogo in app/Controller/OrganisationsController.php does not properly check for a valid logo upload.

In MISP before 2.4.187, __uploadLogo in app/Controller/OrganisationsController.php does not properly check for a valid logo upload.

▾ Midnightmisp-project · mispEPSS 0.38%via NVD
CVE-2024-25675Critical· 9.8
2y ago

An issue was discovered in MISP before 2.4.184

An issue was discovered in MISP before 2.4.184. A client does not need to use POST to start an export generation process. This is related to app/Controller/JobsController.php and app/View/Events/export.ctp.

▾ Midnightmisp-project · mispEPSS 0.82%via NVD
CVE-2024-25674Critical· 9.8
2y ago

An issue was discovered in MISP before 2.4.184

An issue was discovered in MISP before 2.4.184. Organisation logo upload is insecure because of a lack of checks for the file extension and MIME type.

▾ Midnightmisp-project · mispEPSS 0.78%via NVD
CVE-2023-50918Critical· 9.8
2y ago

app/Controller/AuditLogsController.php in MISP before 2.4.182 mishandles ACLs for audit logs.

app/Controller/AuditLogsController.php in MISP before 2.4.182 mishandles ACLs for audit logs.

▾ Midnightmisp-project · mispEPSS 0.79%via NVD
CVE-2023-49926Medium· 6.1
2y ago

app/Lib/Tools/EventTimelineTool.php in MISP before 2.4.179 allows XSS in the event timeline widget.

app/Lib/Tools/EventTimelineTool.php in MISP before 2.4.179 allows XSS in the event timeline widget.

▾ Sunlitmisp-project · mispEPSS 0.41%via NVD
CVE-2023-48659Critical· 9.8
2y ago

An issue was discovered in MISP before 2.4.176

An issue was discovered in MISP before 2.4.176. app/Controller/AppController.php mishandles parameter parsing.

▾ Midnightmisp-project · mispEPSS 0.92%via NVD
CVE-2023-48658Critical· 9.8
2y ago

An issue was discovered in MISP before 2.4.176

An issue was discovered in MISP before 2.4.176. app/Model/AppModel.php lacks a checkParam function for alphanumerics, underscore, dash, period, and space.

▾ Midnightmisp-project · mispEPSS 0.92%via NVD
CVE-2023-48657Critical· 9.8
2y ago

An issue was discovered in MISP before 2.4.176

An issue was discovered in MISP before 2.4.176. app/Model/AppModel.php mishandles filters.

▾ Midnightmisp-project · mispEPSS 0.92%via NVD
CVE-2023-48656Critical· 9.8
2y ago

An issue was discovered in MISP before 2.4.176

An issue was discovered in MISP before 2.4.176. app/Model/AppModel.php mishandles order clauses.

▾ Midnightmisp-project · mispEPSS 0.92%via NVD
CVE-2023-48655Critical· 9.8
2y ago

An issue was discovered in MISP before 2.4.176

An issue was discovered in MISP before 2.4.176. app/Controller/Component/IndexFilterComponent.php does not properly filter out query parameters.

▾ Midnightmisp-project · mispEPSS 0.92%via NVD
CVE-2023-41098Medium· 6.1
3y ago

An issue was discovered in MISP 2.4.174

An issue was discovered in MISP 2.4.174. In app/Controller/DashboardsController.php, a reflected XSS issue exists via the id parameter upon a dashboard edit.

▾ Sunlitmisp-project · mispEPSS 0.42%via NVD
CVE-2023-40224Medium· 6.1
3y ago

MISP 2.4.174 allows XSS in app/View/Events/index.ctp.

MISP 2.4.174 allows XSS in app/View/Events/index.ctp.

▾ Sunlitmisp-project · mispEPSS 0.43%via NVD
CVE-2023-37307Medium· 5.4
3y ago

In MISP before 2.4.172, title_for_layout is not properly sanitized in Correlations, CorrelationExclusions, and Layouts.

In MISP before 2.4.172, title_for_layout is not properly sanitized in Correlations, CorrelationExclusions, and Layouts.

▾ Sunlitmisp-project · mispEPSS 0.50%via NVD
MISP vulnerabilities (CVEs) — page 3 · VulnSea