CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-85237

highcovered by 3 sourcesfirst seen 2026-09-03
Ein Angreifer kann mehrere Schwachstellen in MISP ausnutzen, um Sicherheitsmechanismen zu umgehen, Informationen offenzulegen, Daten oder Sitzungen zu manipulieren und die Verfügbarkeit zu beeinträchtigen.

CSIRTS triage

What
Multiple vulnerabilities in MISP allow attackers to bypass security controls, disclose information, manipulate threat data and sessions, and impair availability.
Who is affected
MISP threat intelligence sharing instances, particularly those federated or exposed for remote collaboration.
Urgency
High priority because MISP is critical security infrastructure; compromise enables threat intelligence poisoning, data exfiltration, and denial of service affecting entire threat intelligence ecosystem.
Action
Apply security patches from the MISP project immediately and audit user access, session data, and imported threat intelligence for signs of compromise.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-85237

Get an email if CVE-2026-85237 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (3)

External references

NVD record for CVE-2026-85237

CVE.org record

Embed the live status

CVE-2026-85237 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-85237 status](https://www.csirts.com/badge/CVE-2026-85237)](https://www.csirts.com/cve/CVE-2026-85237)