CVE-2024-54675
Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.
app/webroot/js/workflows-editor/workflows-editor.js in MISP through 2.5.2 has stored XSS in the editor interface for an ad-hoc workflow.
Published 2024-12-04. Last modified 2026-06-17.