MISP 在 中存在一个 TLS 证书验证不当的漏洞。 属性未被显式初始化,因此默认为 。当该值传递给 cURL 时,除非调用代码显式启用了该选项,否则 TLS 对等方验证实际上处于禁用状态。 因此,通过受影响的 实例建立的 HTTPS 连接可能会接受并非由受信任的证书颁发机构(CA)签发的证书。能够拦截或篡改 MISP 实例与远程 HTTPS 服务之间网络流量的攻击者,可以冒充该远程端点,从而实施中间人(Man-in-the-Middle)攻击。 成功利用该漏洞后,攻击者可以观察 MISP 传输的敏感信息(包括认
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-85216 | 9.5 CRITICAL | MISP LDAP and LinOTP Authentication Bypass via Empty or Invalid Credentials |
| CVE-2026-85236 | 8.8 HIGH | MISP cullEmptyEvents CSRF Allows Irreversible Deletion of Events via GET Request |
| CVE-2026-85237 | 8.6 HIGH | Missing Rate Limiting in Email OTP Verification Allows Brute-Force Authentication Bypass |
| CVE-2026-85238 | 7.6 HIGH | Session Fixation in MISP CustomAuth Authentication Allows Session Hijacking |
| CVE-2026-85239 | 7.1 HIGH | MISP Event Template Definition Validation Bypass Allows Persistent Denial of Service |
| CVE-2026-85227 | 6.1 MEDIUM | Reflected Cross-Site Scripting in MISP Event Filtering via taggedAttributes and galaxyAtta |
| CVE-2026-85226 | 5.3 MEDIUM | MISP OnDemand Correlation Engine Missing Access Control Allows Disclosure of Restricted Co |
| CVE-2026-85230 | 5.3 MEDIUM | MISP Dashboard Button Widget Allows Persistent JavaScript URL Injection |
No comments yet