MISP security advisory (AV26-946)

Canadian Centre for Cyber Security Version 1 original current

Imported from official source

Serial number: AV26-946Date: September 21, 2026 As of September 21, 2026, MISP is affected by vulnerabilities in the following product: MISP Prior to 2.5.47 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Strip the client id from module-result event reports Read only api keys can regain full role powers Refuse a MISP export upload whose content is a path or URL

This version

Version
1 of 1
Recorded
September 21, 2026 19:00
Change
Initial
Content hash
874ef615cccce3a0ad9333c2396f2f3f
All versions
Revision history

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.