CVE-2026-95698
- EPSS 0.72%
- Veröffentlicht 22.09.2026 14:36:35
- Zuletzt bearbeitet 22.09.2026 16:18:23
The findOrgImage method in MISP's OrgImgHelper constructs a filesystem path by concatenating a user-supplied organization identifier with a fixed image directory and a file extension, then calls file_exists() on the resulting path. The organization n...
CVE-2026-95697
- EPSS 0.38%
- Veröffentlicht 22.09.2026 14:31:25
- Zuletzt bearbeitet 22.09.2026 16:18:23
MISP contains an authorization flaw in the Organisation model's captureOrg method. When the $force parameter is set to true, the method unconditionally overwrites organization metadata fields without verifying that the invoking user holds sufficient ...
CVE-2026-95693
- EPSS 0.51%
- Veröffentlicht 22.09.2026 14:22:28
- Zuletzt bearbeitet 22.09.2026 16:18:23
In MISP, the EventReport::uploadPicture method in processed a caller-supplied tmp_name field by invoking file_exists(), mime_content_type(), and exif_imagetype() on the supplied path before verifying that the value was a genuine PHP upload via is_upl...
CVE-2026-95685
- EPSS 0.35%
- Veröffentlicht 22.09.2026 14:13:26
- Zuletzt bearbeitet 22.09.2026 16:18:23
MISP contains an access control flaw in the EventReports functionality. The replaceSuggestionInReport action, which allows modification of suggestion content within an event report, was incorrectly mapped to the wildcard permission ('*') in the ACLCo...
CVE-2026-95683
- EPSS 0.39%
- Veröffentlicht 22.09.2026 14:06:59
- Zuletzt bearbeitet 22.09.2026 16:18:22
In MISP, the Overmind event view enriches an event with its most recent attached report for preview purposes. The enrichment logic fetched the report using only the event ID as the lookup condition, without applying the report's own distribution/ACL ...
CVE-2026-95682
- EPSS 0.42%
- Veröffentlicht 22.09.2026 13:56:51
- Zuletzt bearbeitet 22.09.2026 16:18:22
MISP contains a stored cross-site scripting (XSS) vulnerability in the admin email composition screen. The MISP.org organization name setting was interpolated directly into a JavaScript string literal using an unescaped PHP echo: var org = "<?php ech...
CVE-2026-95679
- EPSS 0.6%
- Veröffentlicht 22.09.2026 13:50:48
- Zuletzt bearbeitet 22.09.2026 16:18:22
MISP's RequestHandlerComponent automatically decodes XML request bodies on all write requests. The underlying Xml::build() library contains a logic error in its readFile guard condition (readFile && http || https), where PHP operator precedence cause...
CVE-2026-95674
- EPSS 0.41%
- Veröffentlicht 22.09.2026 13:44:33
- Zuletzt bearbeitet 22.09.2026 16:18:22
In MISP, the queryEnrichment method in EventsController.php accepted a module name parameter and iterated over the list of enabled modules to find a match. If the specified module was not present in the enabled modules list, the code silently continu...
CVE-2026-95671
- EPSS 0.37%
- Veröffentlicht 22.09.2026 13:20:25
- Zuletzt bearbeitet 22.09.2026 16:18:22
In MISP, the CollectionsController add() method enforced the sharing-group usability authorization check and element capture only when the HTTP request method was POST. However, the underlying CRUDComponent::add() method persists data on both POST an...
CVE-2026-95667
- EPSS 0.18%
- Veröffentlicht 22.09.2026 13:11:44
- Zuletzt bearbeitet 22.09.2026 16:18:21
The MISP installer scripts (for Debian 12, Debian 13, Ubuntu 24.04, and RHEL 9.4) create a log file at /var/log/misp_install.log and a named pipe (FIFO) at /var/log/misp_install.log.pipe to capture all installer output. The log captures highly sensit...