CVE-2020-25766: Misp-Project Misp
High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.
An issue was discovered in MISP before 2.4.132. It can perform an unwanted action because of a POST operation on a form that is not linked to the login page.
Affected products
- Misp-Project Misp: before 2.4.132 (fixed in 2.4.132)
Published 2020-09-18. Last modified 2026-06-22.