# CERT-FR Flags 19 MISP Vulnerabilities

Published: 2026-09-14 · Severity: routine · Sectors: government-national
Canonical: https://vorant.io/reports/e519568b-798a-58cb-a84a-15d74c36ad68/cert-fr-flags-19-misp-vulnerabilities

> CERT-FR warns of multiple vulnerabilities in MISP before 2.5.45 enabling DoS, data confidentiality/integrity breaches, SSRF, XSS and CSRF.

CERT-FR published an advisory (CERTFR-2026-AVI-1170) covering 19 CVEs affecting MISP (Malware Information Sharing Platform) versions prior to 2.5.45. The vulnerabilities span multiple weakness classes including remote denial of service, data confidentiality and integrity compromise, security policy bypass, server-side request forgery (SSRF), indirect remote code injection (XSS), and cross-site request forgery (CSRF) leading to illegitimate request injection. No exploitation in the wild is reported; this is a routine vendor-coordinated disclosure with CVEs assigned in early September 2026.

Given MISP's role as a threat-intelligence sharing platform used widely by CERTs, SOCs, and information-sharing communities, compromise of confidentiality or integrity on such instances could expose sensitive threat data or allow manipulation of shared indicators. Defenders running MISP should prioritize upgrading to 2.5.45 or later, as no other mitigations are described. CERT-FR directs administrators to the official MISP security bulletins and CVE records linked in the advisory for per-vulnerability technical detail.

## Mentioned in this report

- Vulnerabilities: CVE-2026-85216, CVE-2026-85221, CVE-2026-85226, CVE-2026-85227, CVE-2026-85230, CVE-2026-85236, CVE-2026-85237, CVE-2026-85238, CVE-2026-85239, CVE-2026-86342, CVE-2026-86347, CVE-2026-86351, CVE-2026-86408, CVE-2026-86417, CVE-2026-86418, CVE-2026-86419, CVE-2026-86440, CVE-2026-86441, CVE-2026-86452

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1170

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/e519568b-798a-58cb-a84a-15d74c36ad68/cert-fr-flags-19-misp-vulnerabilities.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
