Improper Input Validation in MISP's Decaying Model Import Functionality
CVE-2026-104908
7.1HIGH
What is CVE-2026-104908?
MISP suffers from an improper input validation issue within its decaying model import feature. This vulnerability allows a user with decaying-model permissions to manipulate the import process, potentially overwriting existing decaying models belonging to different organizations. Users can insert nested model keys with their own identifiers, compromising the integrity of the data. As a result, attackers can alter model attributes, including names, formulas, and ownership, while also having the capability to designate a decaying model as the organization default, leading to unintended scoring impacts for other users. Affected systems should be patched promptly to mitigate these risks.
Affected Version(s)
MISP 0 < 2.5.48
