Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

MISP — Vulnerabilities & Security Advisories 46

All 46 CVE vulnerabilities found in MISP, with AI-generated Chinese analysis, references, and POCs.

This page is a vulnerability aggregation resource for MISP, the open-source malware information sharing platform, focusing on software weaknesses and security defects. It collects data regarding authentication bypasses, remote code execution, cross-site scripting, and configuration errors affecting the MISP distribution system. The dataset covers public disclosures and tracked incidents from January 2020 through December 2024, providing a comprehensive historical view of the product's security landscape. By reviewing this aggregation, users can track vendor advisories to stay informed about patches and mitigations for known issues in the platform. Analysts can also use this resource to understand specific weakness classes prevalent in MISP deployments, aiding in threat modeling and risk assessment. Additionally, administrators can look up a product's vulnerability history to identify recurring patterns, such as input validation flaws or privilege escalation vectors, which may indicate deeper systemic design issues. This centralized view eliminates the need to search multiple sources for fragmented information, allowing security teams to prioritize remediation efforts based on the severity and exploitability of reported flaws. The content is structured to facilitate quick identification of critical updates and to support forensic analysis of past security incidents. All entries are sourced from official advisories and verified vulnerability databases to ensure accuracy and relevance for security professionals managing MISP environments.

Vendor: MISP

CVE IDTitleCVSSSeverityPublished
CVE-2026-67178 Open Redirect in MISP Installer-Generated Apache Configuration CWE-601 7.8 High2026-07-28
CVE-2026-61474 MISP: Improper sharing group authorization check when adding attributes CWE-863--2026-07-09
CVE-2026-60125 importModule function in MISP ignores per-organisation import module restrictions CWE-863--2026-07-08
CVE-2026-60124 MISP importModule missing authorization allows read-only users to modify events via misp_standard imports CWE-862--2026-07-08
CVE-2026-56447 MISP remote code execution via arbitrary rdkafka configuration path CWE-829--2026-06-22
CVE-2026-56446 Authenticated Remote Code Execution via Arbitrary NDJSON Error Log Path in MISP CWE-94--2026-06-22
CVE-2026-56425 MISP AAD authentication plugin - Improper OAuth State Handling, Missing Session Rotation, Insecure Redirect URI Validation, and Log Injection CWE-384--2026-06-22
CVE-2026-56424 Broken access control in MISP core allows cross-organization unauthorized modification or deletion of analyst data, event reports, collections, templates, and decaying models CWE-639--2026-06-22
CVE-2026-56423 MISP Core: Broken access control allows instance-wide unauthorized deletion of event reports and sharing groups via bulk deletion endpoints CWE-862--2026-06-22
CVE-2026-56422 MISP Core: Mass Assignment and Object Re-ownership via Unvalidated Request Fields CWE-639--2026-06-22
CVE-2026-54398 MISP object edit authorization bypass allows unauthorized sharing group assignment CWE-863--2026-06-12
CVE-2026-54397 MISP event editing allows unauthorized assignment to undisclosed sharing groups CWE-863--2026-06-12
CVE-2026-54396 MISP AuthKey edit endpoint allows authenticated user email enumeration CWE-200--2026-06-12
CVE-2026-54395 MISP UiBeta event index reflected XSS in advanced filter popup CWE-79--2026-06-12
CVE-2026-54394 MISP organisation logo path traversal allows retrieval of arbitrary PNG/SVG files CWE-22--2026-06-12
CVE-2026-54393 MISP Overmind theme stored XSS via unvalidated homepage setting CWE-79--2026-06-12
CVE-2026-54362 MISP template builder exposes non-visible custom galaxies across organisations CWE-863--2026-06-12
CVE-2026-54361 MISP mass assignment vulnerabilities allow unauthorized modification of ownership and delegation records CWE-639--2026-06-12
CVE-2026-54360 MISP sharing group creation mass assignment allows unauthorized takeover of existing sharing groups CWE-639--2026-06-12
CVE-2026-54359 MISP automation endpoints may be exposed to CSRF when Sec-Fetch-Site protection is disabled by default CWE-352--2026-06-12
CVE-2026-54358 MISP organization administrators can target site administrator accounts for password reset CWE-863--2026-06-12
CVE-2026-54357 MISP improper authorization allows organization administrators to modify site administrator user settings CWE-863--2026-06-12
CVE-2026-10868 MISP user edit endpoint mass assignment vulnerability allows unauthorized user account modification CWE-269--2026-06-04
CVE-2026-10864 MISP Dashboard widget field selection may expose restricted user and organisation data CWE-200--2026-06-04
CVE-2026-10863 MISP User-controlled order parameter in correlations over-correlation endpoint CWE-20--2026-06-04
CVE-2026-10860 MISP CRUDComponent delete validation bypass via operator precedence error CWE-863--2026-06-04
CVE-2026-10861 MISP post-login open redirect via pre_login_requested_url CWE-601--2026-06-04
CVE-2026-10856 Open redirect in MISP dashboard button widget URL handling CWE-601--2026-06-04
CVE-2026-10855 MISP Event template importer authorization bypass CWE-862--2026-06-04
CVE-2026-10854 Unauthorized exposure of private galaxies in MISP event template creation CWE-200--2026-06-04

All 46 known CVE vulnerabilities affecting MISP with full Chinese analysis, references, and POCs where available.