MISP 2.4.122 ha riflettuto XSS tramite parametri URL unsanitized. Questo è legato alla app / Vista / Users / statistics_orgs.ctp.
https://github.com/MISP/MISP/releases/tag/v2.4.123
https://github.com/MISP/MISP/commit/43a0757fb33769d9ad4ca09e8f2ac572f9f6a491
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10246