Known Vulnerabilities for Cti-transmute by MISP
Listed below are 10 of the newest known vulnerabilities associated with "Cti-transmute" by "MISP".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-73162 json | Affected versions of MISP cti-transmute expose several state-changing account operations as GET requests: * /account/f... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73161 json | Affected versions of cti-transmute improperly handle conversion-table values passed through the search highlighting feature. ... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73160 json | Affected versions of cti-transmute contain an SSRF vulnerability in the /fetch_misp_event and /misp_search_events endpoints. ... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73159 json | Affected versions of cti-transmute allow a tag's icon value to be stored and later interpolated into HTML through Vue's v-htm... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73158 json | Affected versions of cti-transmute insufficiently validate saved graph configuration data. Graph configurations can contain s... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73157 json | Affected versions of cti-transmute render data obtained from a remote MISP instance into the event-browser interface using HT... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73156 json | Affected versions of cti-transmute fail to HTML-escape attacker-controlled values used in ECharts Sunburst and Treemap toolti... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73155 json | Affected versions of cti-transmute allow authenticated users to add or remove emoji reactions on comments without first check... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73140 json | Affected versions of cti-transmute fail to apply comment-level access-control rules when generating evaluation report exports... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-72760 json | Affected versions of MISP cti-transmute disclose users' email addresses through the account following-list endpoint. When an ... | Not Provided | 2026-08-10 | 2026-08-10 |