{"schema_version":1,"title":"MISP Project MISP vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 20 vulnerabilities in MISP Project MISP: 20 in the last 7 days and 20 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-95806, was published on 22 September 2026.","url":"https://junglewise.ai/threats/technologies/misp-project-misp","json_url":"https://junglewise.ai/threats/technologies/misp-project-misp.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/misp-project-misp","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":0,"all_time":20,"critical":0,"exploited":0,"last_7_days":20,"last_30_days":20,"last_90_days":20,"last_365_days":20},"latest":[{"cve":"CVE-2026-95806","epss":0.0039,"slug":"cve-2026-95806-misp-ships-with-php-s-phar-stream-wrapper-registered-in-both-its","title":"MISP remote code execution via unregistered phar stream wrapper","severity":"info","exploited":false,"published_at":"2026-09-22T16:18:24.547+00:00","url":"https://junglewise.ai/threats/cve-2026-95806-misp-ships-with-php-s-phar-stream-wrapper-registered-in-both-its"},{"cve":"CVE-2026-95754","epss":0.0054,"slug":"cve-2026-95754-in-misp-s-userscontroller-login-method-the-pre-authentication","title":"MISP UsersController auth bypass via missing disabled-user check in TOTP branch","severity":"info","exploited":false,"published_at":"2026-09-22T15:17:28.53+00:00","url":"https://junglewise.ai/threats/cve-2026-95754-in-misp-s-userscontroller-login-method-the-pre-authentication"},{"cve":"CVE-2026-95701","epss":0.0076,"slug":"cve-2026-95701-in-misp-the-statisticsorgs-method-in-userscontroller-php-used-the","title":"MISP path traversal in organization logo check","severity":"info","exploited":false,"published_at":"2026-09-22T15:17:28.103+00:00","url":"https://junglewise.ai/threats/cve-2026-95701-in-misp-the-statisticsorgs-method-in-userscontroller-php-used-the"},{"cve":"CVE-2026-95693","epss":0.0051,"slug":"cve-2026-95693-in-misp-the-eventreport-uploadpicture-method-in-processed-a","title":"MISP EventReport path traversal information disclosure","severity":"info","exploited":false,"published_at":"2026-09-22T15:17:27.443+00:00","url":"https://junglewise.ai/threats/cve-2026-95693-in-misp-the-eventreport-uploadpicture-method-in-processed-a"},{"cve":"CVE-2026-95685","epss":0.0035,"slug":"cve-2026-95685-misp-contains-an-access-control-flaw-in-the-eventreports","title":"MISP access control flaw in EventReports replaceSuggestionInReport","severity":"info","exploited":false,"published_at":"2026-09-22T15:17:26.287+00:00","url":"https://junglewise.ai/threats/cve-2026-95685-misp-contains-an-access-control-flaw-in-the-eventreports"},{"cve":"CVE-2026-95683","epss":0.0039,"slug":"cve-2026-95683-in-misp-the-overmind-event-view-enriches-an-event-with-its-most","title":"MISP Overmind event view unauthorized report disclosure via insufficient ACL checks","severity":"info","exploited":false,"published_at":"2026-09-22T15:17:26.04+00:00","url":"https://junglewise.ai/threats/cve-2026-95683-in-misp-the-overmind-event-view-enriches-an-event-with-its-most"},{"cve":"CVE-2026-95679","epss":0.006,"slug":"cve-2026-95679-misp-s-requesthandlercomponent-automatically-decodes-xml-request","title":"MISP RequestHandlerComponent SSRF in cspReport endpoint","severity":"info","exploited":false,"published_at":"2026-09-22T14:17:22.387+00:00","url":"https://junglewise.ai/threats/cve-2026-95679-misp-s-requesthandlercomponent-automatically-decodes-xml-request"},{"cve":"CVE-2026-95674","epss":0.0041,"slug":"cve-2026-95674-in-misp-the-queryenrichment-method-in-eventscontroller-php","title":"MISP missing module availability validation in queryEnrichment","severity":"info","exploited":false,"published_at":"2026-09-22T14:17:21.99+00:00","url":"https://junglewise.ai/threats/cve-2026-95674-in-misp-the-queryenrichment-method-in-eventscontroller-php"},{"cve":"CVE-2026-95671","epss":0.0037,"slug":"cve-2026-95671-in-misp-the-collectionscontroller-add-method-enforced-the-sharing","title":"MISP CollectionsController authorization bypass on PUT requests","severity":"info","exploited":false,"published_at":"2026-09-22T14:17:21.747+00:00","url":"https://junglewise.ai/threats/cve-2026-95671-in-misp-the-collectionscontroller-add-method-enforced-the-sharing"},{"cve":"CVE-2026-95667","epss":0.0018,"slug":"cve-2026-95667-the-misp-installer-scripts-for-debian-12-debian-13-ubuntu-24-04","title":"MISP installer log world-readable credential exposure","severity":"info","exploited":false,"published_at":"2026-09-22T14:17:21.593+00:00","url":"https://junglewise.ai/threats/cve-2026-95667-the-misp-installer-scripts-for-debian-12-debian-13-ubuntu-24-04"},{"cve":"CVE-2026-95665","epss":0.0054,"slug":"cve-2026-95665-misp-contains-a-reflected-cross-site-scripting-xss-vulnerability","title":"MISP reflected XSS in event REST search export confirmation form","severity":"info","exploited":false,"published_at":"2026-09-22T14:17:21.18+00:00","url":"https://junglewise.ai/threats/cve-2026-95665-misp-contains-a-reflected-cross-site-scripting-xss-vulnerability"},{"cve":"CVE-2026-95661","epss":0.0044,"slug":"cve-2026-95661-misp-contains-a-reflected-cross-site-scripting-xss-vulnerability","title":"MISP reflected XSS in attribute histogram view","severity":"info","exploited":false,"published_at":"2026-09-22T13:17:14.05+00:00","url":"https://junglewise.ai/threats/cve-2026-95661-misp-contains-a-reflected-cross-site-scripting-xss-vulnerability"},{"cve":"CVE-2026-94404","epss":0.0021,"slug":"cve-2026-94404-misp-has-a-security-issue-that-could-let-an-attacker-change","title":"MISP cross-site request forgery in attribute editing","severity":"info","exploited":false,"published_at":"2026-09-21T14:17:31.203+00:00","url":"https://junglewise.ai/threats/cve-2026-94404-misp-has-a-security-issue-that-could-let-an-attacker-change"},{"cve":"CVE-2026-94401","epss":0.0038,"slug":"cve-2026-94401-misp-has-a-file-handling-vulnerability-that-could-let-certain","title":"MISP file upload SSRF and arbitrary file read","severity":"info","exploited":false,"published_at":"2026-09-21T14:17:30.957+00:00","url":"https://junglewise.ai/threats/cve-2026-94401-misp-has-a-file-handling-vulnerability-that-could-let-certain"},{"cve":"CVE-2026-94394","epss":0.0035,"slug":"cve-2026-94394-when-a-regular-user-adds-a-reference-between-objects-or","title":"MISP authorization bypass in event attribute and object access","severity":"info","exploited":false,"published_at":"2026-09-21T14:17:30.717+00:00","url":"https://junglewise.ai/threats/cve-2026-94394-when-a-regular-user-adds-a-reference-between-objects-or"},{"cve":"CVE-2026-94383","epss":0.0051,"slug":"cve-2026-94383-the-misp-blocklist-workflow-module-accepted-a-user-supplied","title":"MISP blocklist workflow module arbitrary script execution","severity":"info","exploited":false,"published_at":"2026-09-21T13:17:13.56+00:00","url":"https://junglewise.ai/threats/cve-2026-94383-the-misp-blocklist-workflow-module-accepted-a-user-supplied"},{"cve":"CVE-2026-94381","epss":0.0037,"slug":"cve-2026-94381-misp-has-a-security-issue-that-can-let-a-user-gain-more-access","title":"MISP privilege escalation via read-only API key","severity":"info","exploited":false,"published_at":"2026-09-21T13:17:13.36+00:00","url":"https://junglewise.ai/threats/cve-2026-94381-misp-has-a-security-issue-that-can-let-a-user-gain-more-access"},{"cve":"CVE-2026-94374","epss":0.0037,"slug":"cve-2026-94374-misp-contains-an-insecure-direct-object-reference-vulnerability","title":"MISP insecure direct object reference in processModuleResultsData","severity":"info","exploited":false,"published_at":"2026-09-21T13:17:12.953+00:00","url":"https://junglewise.ai/threats/cve-2026-94374-misp-contains-an-insecure-direct-object-reference-vulnerability"},{"cve":"CVE-2026-94372","epss":0.0039,"slug":"cve-2026-94372-misp-contains-a-stored-cross-site-scripting-xss-vulnerability-in","title":"MISP stored cross-site scripting in Galaxies index page","severity":"info","exploited":false,"published_at":"2026-09-21T13:17:12.54+00:00","url":"https://junglewise.ai/threats/cve-2026-94372-misp-contains-a-stored-cross-site-scripting-xss-vulnerability-in"},{"cve":"CVE-2026-94277","epss":0.004,"slug":"cve-2026-94277-misp-s-galaxy-matrix-statistics-view-app-view-users-statistics","title":"MISP galaxy matrix statistics view stored XSS via galaxy name","severity":"info","exploited":false,"published_at":"2026-09-21T10:17:17.57+00:00","url":"https://junglewise.ai/threats/cve-2026-94277-misp-s-galaxy-matrix-statistics-view-app-view-users-statistics"}],"weekly":[{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":20},{"week":"2026-09-28","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"MISP Project Misp-Modules","slug":"misp-modules","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/misp-modules"}],"technology":{"hub":true,"name":"MISP Project MISP","slug":"misp-project-misp","vendor":{"name":"MISP Project","slug":"misp-project","url":"https://junglewise.ai/threats/vendors/misp-project"},"aliases":[],"category":"threat-intelligence-platform","description":"Open-source platform for sharing, storing, and correlating threat intelligence indicators.","url":"https://junglewise.ai/threats/technologies/misp-project-misp"},"most_severe":[{"cve":"CVE-2026-95701","epss":0.0076,"slug":"cve-2026-95701-in-misp-the-statisticsorgs-method-in-userscontroller-php-used-the","title":"MISP path traversal in organization logo check","severity":"info","exploited":false,"published_at":"2026-09-22T15:17:28.103+00:00","url":"https://junglewise.ai/threats/cve-2026-95701-in-misp-the-statisticsorgs-method-in-userscontroller-php-used-the"},{"cve":"CVE-2026-95679","epss":0.006,"slug":"cve-2026-95679-misp-s-requesthandlercomponent-automatically-decodes-xml-request","title":"MISP RequestHandlerComponent SSRF in cspReport endpoint","severity":"info","exploited":false,"published_at":"2026-09-22T14:17:22.387+00:00","url":"https://junglewise.ai/threats/cve-2026-95679-misp-s-requesthandlercomponent-automatically-decodes-xml-request"},{"cve":"CVE-2026-95754","epss":0.0054,"slug":"cve-2026-95754-in-misp-s-userscontroller-login-method-the-pre-authentication","title":"MISP UsersController auth bypass via missing disabled-user check in TOTP branch","severity":"info","exploited":false,"published_at":"2026-09-22T15:17:28.53+00:00","url":"https://junglewise.ai/threats/cve-2026-95754-in-misp-s-userscontroller-login-method-the-pre-authentication"},{"cve":"CVE-2026-95665","epss":0.0054,"slug":"cve-2026-95665-misp-contains-a-reflected-cross-site-scripting-xss-vulnerability","title":"MISP reflected XSS in event REST search export confirmation form","severity":"info","exploited":false,"published_at":"2026-09-22T14:17:21.18+00:00","url":"https://junglewise.ai/threats/cve-2026-95665-misp-contains-a-reflected-cross-site-scripting-xss-vulnerability"},{"cve":"CVE-2026-95693","epss":0.0051,"slug":"cve-2026-95693-in-misp-the-eventreport-uploadpicture-method-in-processed-a","title":"MISP EventReport path traversal information disclosure","severity":"info","exploited":false,"published_at":"2026-09-22T15:17:27.443+00:00","url":"https://junglewise.ai/threats/cve-2026-95693-in-misp-the-eventreport-uploadpicture-method-in-processed-a"},{"cve":"CVE-2026-94383","epss":0.0051,"slug":"cve-2026-94383-the-misp-blocklist-workflow-module-accepted-a-user-supplied","title":"MISP blocklist workflow module arbitrary script execution","severity":"info","exploited":false,"published_at":"2026-09-21T13:17:13.56+00:00","url":"https://junglewise.ai/threats/cve-2026-94383-the-misp-blocklist-workflow-module-accepted-a-user-supplied"},{"cve":"CVE-2026-95661","epss":0.0044,"slug":"cve-2026-95661-misp-contains-a-reflected-cross-site-scripting-xss-vulnerability","title":"MISP reflected XSS in attribute histogram view","severity":"info","exploited":false,"published_at":"2026-09-22T13:17:14.05+00:00","url":"https://junglewise.ai/threats/cve-2026-95661-misp-contains-a-reflected-cross-site-scripting-xss-vulnerability"},{"cve":"CVE-2026-95674","epss":0.0041,"slug":"cve-2026-95674-in-misp-the-queryenrichment-method-in-eventscontroller-php","title":"MISP missing module availability validation in queryEnrichment","severity":"info","exploited":false,"published_at":"2026-09-22T14:17:21.99+00:00","url":"https://junglewise.ai/threats/cve-2026-95674-in-misp-the-queryenrichment-method-in-eventscontroller-php"},{"cve":"CVE-2026-94277","epss":0.004,"slug":"cve-2026-94277-misp-s-galaxy-matrix-statistics-view-app-view-users-statistics","title":"MISP galaxy matrix statistics view stored XSS via galaxy name","severity":"info","exploited":false,"published_at":"2026-09-21T10:17:17.57+00:00","url":"https://junglewise.ai/threats/cve-2026-94277-misp-s-galaxy-matrix-statistics-view-app-view-users-statistics"},{"cve":"CVE-2026-95806","epss":0.0039,"slug":"cve-2026-95806-misp-ships-with-php-s-phar-stream-wrapper-registered-in-both-its","title":"MISP remote code execution via unregistered phar stream wrapper","severity":"info","exploited":false,"published_at":"2026-09-22T16:18:24.547+00:00","url":"https://junglewise.ai/threats/cve-2026-95806-misp-ships-with-php-s-phar-stream-wrapper-registered-in-both-its"}],"generated_at":"2026-09-28T03:07:00.154823+00:00"}