MISP 在 galaxy(星系)图标处理路径中存在一个存储型跨站脚本(XSS)漏洞。Galaxy 对象的 icon 字段在通过 galaxy 添加、编辑以及同步/导入捕获接口进行持久化时,未执行任何服务器端验证。随后,该存储值被基于 D3 的相关性图渲染脚本(包括默认主题和 Overmind 主题)直接使用 方法拼接到 HTML 标记中。 拥有 权限的用户(该权限默认授予标准的 User 角色)可以在 icon 字段中存储任意的 HTML 或 JavaScript 代码。任何打开包含属于该 galaxy 的 cl
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-103235 | 8.7 HIGH | MISP Event Delegation Mass Assignment Allows Retargeting Delegation to Arbitrary Events |
| CVE-2026-103239 | 8.6 HIGH | MISP Tag Collection Save Allows Privilege Escalation via Sibling Model Injection |
| CVE-2026-103237 | 8.3 HIGH | MISP: Nested Model Alias Key Bypasses Sanitization to Modify Cross-Tenant Rows |
| CVE-2026-103321 | 8.3 HIGH | MISP Stored Cross-Site Scripting (XSS) via Unvalidated Event Graph Preview Image |
| CVE-2026-103388 | 6.2 MEDIUM | MISP Stored Cross-Site Scripting via JavaScript URL in Galaxy Cluster Source Field |
No comments yet