MISP 2.4.107 patches three XSS flaws
MISP 2.4.107 fixes three persistent XSS vulnerabilities and adds new features like YARA export and ATT&CK integration.
The MISP project released version 2.4.107, introducing several new features including similar-object merging tools, native YARA and YARA-JSON export, an ATT&CK export format for restSearch, and improved installer support for OpenBSD and Debian. The release also includes numerous bug fixes and new MISP modules for document and sandbox import.
Alongside these improvements, the release addresses three persistent cross-site scripting (XSS) vulnerabilities reported by João Lucas Melo Brasio of Elytron Security S.A. These issues affect the discussion interface, attribute value fields, and image title handling within the MISP web application, and could allow JavaScript injection triggered via user interaction such as clicking links or viewing screenshots. Users are strongly advised to upgrade to 2.4.107 to remediate these issues.
Mentioned in this report
Source reporting: https://www.misp-project.org/2019/05/13/misp.2.4.107.released.html
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free