CVE-2025-67906 | MISP up to 2.5.27 executionPath.ctp cross site scripting (EUVD-2025-203326)
A vulnerability categorized as problematic has been discovered in MISP up to 2.5.27. The impacted element is an unknown function of the file app/View/Elements/Workflows/executionPath.ctp. Executing manipulation can lead to cross site scripting.
This vulnerability is tracked as CVE-2025-67906. The attack can be launched remotely. No exploit exists.
It is advisable to upgrade the affected component.
If you want to get the best quality for vulnerability data then you always have to consider VulDB.