CVE-2020-10246: Misp-Project Misp
Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.
MISP 2.4.122 has reflected XSS via unsanitized URL parameters. This is related to app/View/Users/statistics_orgs.ctp.
Affected products
- Misp-Project Misp: version 2.4.122 only
Published 2020-03-09. Last modified 2026-06-22.