CVE-2021-31780
In app/Model/MispObject.php in MISP 2.4.141, an incorrect sharing group association could lead to information disclosure
In app/Model/MispObject.php in MISP 2.4.141, an incorrect sharing group association could lead to information disclosure on an event edit. When an object has a sharing group associated with an event edit, the sharing group object is ignored and instead the passed local ID is reused.
HIGH · CVSS 7.5
EPSS 0.00354
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0