A vulnerability was found in MISP up to 2.5.47. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Legacy Taxonomy Tag Management Confirmation Forms. Such manipulation of the argument tag name leads to cross site scripting. This vulnerability is traded as CVE-2026-103662. The attack may... Weiterlesen: CVE-2026-103662 | MISP up to 2.5.47 Legacy Taxonomy Tag Management Co…
Intelligence View
⚡ tsecurity.de Intelligence
CVE-2026-103662 | MISP up to 2.5.47 Legacy Taxonomy Tag Management Confirmation Forms tag name cross site scripting (WID-SEC-2026-3705)
A vulnerability was found in MISP up to 2.5.47. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the…
Cyber Threat Intelligence & Forensik
ATT&CK-Navigator · IoC-Radar · Exploit-Belege
Compliance, SLA & Vendor Adherence
Advisory-Prüfung · Score-Einordnung · Fristen
BSI-Warnung (Deutschland)CVE-2026-103662
MISP: Mehrere Schwachstellen hoch01.10.2026CISA-SSVC-Triage (vulnrichment)CVE-2026-103662
Exploitation: none (Keine bekannte Ausnutzung)Automatable: no (Nicht automatisierbar)Technical Impact: partial (Teilweise)
Quelle: CISA-ADP vulnrichment · Stand 2026-10-01T15:07:07.862444Z · CISA Coordinator
Advisory Radar
In herstellerseitiger Prüfung
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Hersteller-Advisory noch nicht formal hinterlegt. Regelmäßiges Re-Scanning der CTI-Quellen anberaumt.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Upstream-Referenz (Code-Hosting, kein Advisory)github.com