First published: Mon May 18 2020(Updated: )
app/View/Events/resolved_attributes.ctp in MISP before 2.4.126 has XSS in the resolved attributes view.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Misp Misp | <2.4.126 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-13153.
The severity of CVE-2020-13153 is medium.
CVE-2020-13153 is a cross-site scripting (XSS) vulnerability in the resolved attributes view of MISP before version 2.4.126.
CVE-2020-13153 affects MISP software versions up to and including 2.4.126.
To fix CVE-2020-13153, update MISP to version 2.4.126 or later.