Medium severity6.1NVD Advisory· Published Jan 19, 2021· Updated Jun 22, 2026
CVE-2021-25325
CVE-2021-25325
Description
MISP 2.4.136 has XSS via galaxy cluster element values to app/View/GalaxyElements/ajax/index.ctp. Reference types could contain javascript: URLs.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- MISP/MISPdescription
Patches
Vulnerability mechanics
References
1- github.com/MISP/MISP/commit/829c3199ba3afdecb52e0719509f3df4463be5b4nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.