GHSA-672j-7w35-wcrvMediumCVSS 5.5

An issue was discovered in app/Model/SharingGroupServer.php in MISP 2.4.139. In the...

Published
May 24, 2022
Last Modified
June 22, 2026

🔗 CVE IDs covered (1)

📋 Description

An issue was discovered in app/Model/SharingGroupServer.php in MISP 2.4.139. In the implementation of Sharing Groups, the "all org" flag sometimes provided view access to unintended actors.

🔗 References (3)