Known Vulnerabilities for Misp by Misp-project
Listed below are 10 of the newest known vulnerabilities associated with "Misp" by "Misp-project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-78380 json | RansomLook fails to enforce the privacy status of ransomware groups and markets when distributing newly collected victim post... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-77761 json | A parser state isolation vulnerability in misp-stix could cause data from a previously processed STIX document to be retained... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-77755 json | A denial-of-service vulnerability was identified in misp-stix when processing attacker-controlled STIX 1 or STIX 2 documents.... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-77751 json | A path traversal vulnerability existed in the handling of MISP object template names during STIX 2 import and MISP-to-STIX 2 ... | Not Provided | 2026-08-21 | 2026-08-25 |
| CVE-2026-77710 json | A vulnerability in misp-stix could allow a crafted STIX document to influence security-sensitive MISP attribute metadata duri... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-73162 json | Affected versions of MISP cti-transmute expose several state-changing account operations as GET requests: * /account/f... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73160 json | Affected versions of cti-transmute contain an SSRF vulnerability in the /fetch_misp_event and /misp_search_events endpoints. ... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73157 json | Affected versions of cti-transmute render data obtained from a remote MISP instance into the event-browser interface using HT... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73156 json | Affected versions of cti-transmute fail to HTML-escape attacker-controlled values used in ECharts Sunburst and Treemap toolti... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-72760 json | Affected versions of MISP cti-transmute disclose users' email addresses through the account following-list endpoint. When an ... | Not Provided | 2026-08-10 | 2026-08-10 |