Vulnerabilities > Misp > Misp > 2.3.108

DATE CVE VULNERABILITY TITLE RISK
2022-04-20 CVE-2022-29532 Cross-site Scripting vulnerability in Misp
An issue was discovered in MISP before 2.4.158.
network
low complexity
misp CWE-79
4.8
2022-04-20 CVE-2022-29533 Cross-site Scripting vulnerability in Misp
An issue was discovered in MISP before 2.4.158.
network
low complexity
misp CWE-79
6.1
2022-04-20 CVE-2022-29534 Improper Authentication vulnerability in Misp
An issue was discovered in MISP before 2.4.158.
network
low complexity
misp CWE-287
7.5
2022-03-18 CVE-2022-27243 Unspecified vulnerability in Misp
An issue was discovered in MISP before 2.4.156.
network
misp
6.8
2022-03-18 CVE-2022-27244 Cross-site Scripting vulnerability in Misp
An issue was discovered in MISP before 2.4.156.
network
misp CWE-79
3.5
2022-03-18 CVE-2022-27245 Server-Side Request Forgery (SSRF) vulnerability in Misp
An issue was discovered in MISP before 2.4.156.
network
misp CWE-918
6.8
2022-03-18 CVE-2022-27246 Cross-site Scripting vulnerability in Misp
An issue was discovered in MISP before 2.4.156.
network
misp CWE-79
4.3
2021-09-17 CVE-2021-41326 Unspecified vulnerability in Misp
In MISP before 2.4.148, app/Lib/Export/OpendataExport.php mishandles parameter data that is used in a shell_exec call.
network
low complexity
misp
critical
9.8
2021-07-07 CVE-2021-36212 Cross-site Scripting vulnerability in Misp
app/View/SharingGroups/view.ctp in MISP before 2.4.146 allows stored XSS in the sharing groups view.
network
misp CWE-79
4.3
2021-03-02 CVE-2021-27904 Unspecified vulnerability in Misp
An issue was discovered in app/Model/SharingGroupServer.php in MISP 2.4.139.
local
low complexity
misp
2.1