VYPR
Critical severity9.8NVD Advisory· Published Aug 19, 2021· Updated Jun 22, 2026

CVE-2021-39302

CVE-2021-39302

Description

MISP 2.4.148, in certain configurations, allows SQL injection via the app/Model/Log.php $conditions['org'] value.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Misp/Misp2 versions
    cpe:2.3:a:misp-project:misp:2.4.148:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:misp-project:misp:2.4.148:*:*:*:*:*:*:*
    • (no CPE)range: <=2.4.148
  • MISP/MISPdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.