Intelligence View
CVE-2026-39962 | MISP up to 2.5.35 ApacheAuthenticate.php Username ldap injection (GHSA-mc53-48w8-9g63 / WID-SEC-2026-1045)
A vulnerability classified as critical has been found in MISP up to 2.5.35. Affected by this issue is some unknown functionality of the file ApacheAuthenticate.php. The manipulation of the argument Username leads to ldap injection. This…
This vulnerability is documented as CVE-2026-39962. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
SOCIAL SHARE CARD GENERATOR