Security Advisory

CVE-2021-25325

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-01-19 15:29:58
Last updated 2024-08-03 20:03:05
Assigner mitre
State PUBLISHED

Description

MISP 2.4.136 has XSS via galaxy cluster element values to app/View/GalaxyElements/ajax/index.ctp. Reference types could contain javascript: URLs.