MISP
cpe:2.3:a:misp:misp:*:*:*:*:*:*:*
- < 2.4.193
A vulnerability exists in MISP versions prior to 2.4.193 within the RestResponseComponent. This issue arises from REST endpoints not properly sanitizing response data when it is not in JSON format. As a result, non-JSON response bodies could potentially be exploited.
Exploitation of this vulnerability could lead to the injection of unsanitized data into response bodies, creating a risk of cross-site scripting (XSS) attacks.
Users can upgrade to MISP version 2.4.193 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.