VYPR
High severity7.5NVD Advisory· Published Apr 23, 2021· Updated Jun 22, 2026

CVE-2021-31780

CVE-2021-31780

Description

In app/Model/MispObject.php in MISP 2.4.141, an incorrect sharing group association could lead to information disclosure on an event edit. When an object has a sharing group associated with an event edit, the sharing group object is ignored and instead the passed local ID is reused.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Misp/Misp2 versions
    cpe:2.3:a:misp-project:misp:2.4.141:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:misp-project:misp:2.4.141:*:*:*:*:*:*:*
    • (no CPE)range: <=2.4.141
  • MISP/MISPdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.