Improper TLS Certificate Validation Vulnerability in MISP by MISP Project
CVE-2026-85221
7.6HIGH
What is CVE-2026-85221?
MISP contains a vulnerability in its CurlClient where the TLS peer verification was not initiated, allowing for potential acceptance of untrusted certificates. This flaw can expose sensitive data if an attacker intercepts network traffic. When exploiting this vulnerability, attackers can impersonate remote services, enabling them to observe and manipulate critical threat intelligence or authentication details. The recent patch corrects this issue by enabling TLS peer verification by default and ensuring correct handling of self-signed certificates, thereby protecting users from man-in-the-middle attacks.
Affected Version(s)
misp 0 <= 2.5.45
References
CVSS V4
Score:
7.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Andras Iklody
Claude Opus 5 (1M context)
elhoim (David André)
