CVE Explorer
CVE-2026-56422
Multiple MISP core controllers and model capture paths accepted client-controlled request fields such as primary keys (id) and ownership/scope foreign keys (event_id, org_id, user_id, sharing_group_id, galaxy_cluster_uuid, organisation_uuid, and related nested object identifiers) without consistently stripping, pinning, or revalidating them against the server-authorized object.
In affected paths, an authenticated user with access to one authorized object could submit crafted REST or form payloa
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"defaultStatus":"unaffected","product":"misp","repo":"https://github.com/misp/misp","vendor":"misp","versions":[{"lessThanOrEqual":"2.5.41","status":"affected","version":"0","versionType":"semver"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","Safety":"NOT_DEFINED","attackComplexity":"LOW","attackRequirements":"NONE","attackVector":"NETWORK","baseScore":9.4,"baseSeverity":"CRITICAL","privilegesRequired":"LOW","providerUrgency":"NOT_DEFINED","subAvailabilityImpact":"HIGH","subConfidentialityImpact":"HIGH","subIntegrityImpact":"HIGH","userInteraction":"NONE","valueDensity":"NOT_DEFINED","vectorString":"CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H","version":"4.0","vulnAvailabilityImpact":"HIGH","vulnConfidentialityImpact":"HIGH","vulnIntegrityImpact":"…
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/metrics/0/cvssV4_0
CWE assertions
1 source assertion{"cweId":"CWE-639","description":"CWE-639 Authorization Bypass Through User-Controlled Key","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/problemTypes/0/descriptions/0
Source references
16 source assertions{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/00b2e3dae56fa24ea750eb525cc4709b7e5bee85"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/5
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/025f711506850aadb69cde1b57e5e5d57628c87f"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/10
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/05aad418c57bb78e6b58a843d70d45de8f50db45"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/3
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/2cc26f38f3e85c594957899f09043d5193146607"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/13
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/3ff6bd9cfdab5d41b4667ea7298d88ffd6f3fcb8"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/11
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/57433015815e59db5a1f11536f90920952cf3fcd"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/14
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/58f637aaab4d133e72f1454ebb963191d96d3b78"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/2
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/634f1f87c295193486c08c2c7ba1fee8a7339baa"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/6
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/63aebc27a878233b9475c742985aaef909bc755b"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/4
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/7acf8220cafac58bcfb362da37aca512fe4bb396"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/0
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/8311427c2edd72a8341f0a65e1f11073d7ad9191"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/8
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/84bafe69f5d0ab7f811371c0801a613f271ebc0b"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/12
{"url":"https://github.com/MISP/MISP/commit/9341690e9b6dde7f0605edea5533e05ba7362e35"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/15
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/ab9619dfa6cb5210fd20fb3b0b57006e4fc93916"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/7
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/bc182d55dde5686a36ca2eb88fe6c2adabb9fad9"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/1
{"tags":["patch"],"url":"https://github.com/MISP/MISP/commit/c80a3533b3d787f45f5185a4621cc0f05b0cf2e5"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d17cf8422d09d32df7ffbd7b0e7006cdfd0482ef31c665d59d664718be1cd12d · sha256:c35c5dab1a87bfcd… · /containers/cna/references/9
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.