可以在截图中获取到以下漏洞的关键信息: 漏洞名称:MISP - Stored XSS when viewing Galaxy Cluster Relationships 发布日期:29.09.2021 受影响的供应商:CIRCL - Computer Incident Response Center Luxembourg 受影响的产品:MISP - Open Source Threat Intelligence Platform & Open Standards For Threat Information Sharing - https://www.misp-project.org/ 漏洞版本:2.4.147 修复版本:2.4.148 CVE编号:CVE-2021-37742 漏洞详细信息: - 当用户查看星系群关系时,可以触发存储的跨站脚本(XSS)。 - 贡献者:Dawid Czarnecki - 参考资料: - https://www.misp-project.org/2021/08/09/MISP.2.4.148.released.html - https://cvepremium.circl.lu/cve/CVE-2021-37742 - https://github.com/MISP/MISP/commit/af50add82433eb2a740c3621b99d9d14d2b1e192 - https://nvd.nist.gov/vuln/detail/CVE-2021-37742