GHSA-vp6j-v4pc-c3q6MediumCVSS 4.3

app/Controller/UsersController.php in MISP before 2.4.164 allows attackers to discover role names...

Published
October 10, 2022
Last Modified
June 23, 2026

🔗 CVE IDs covered (1)

📋 Description

app/Controller/UsersController.php in MISP before 2.4.164 allows attackers to discover role names (this is information that only the site admin should have).

🔗 References (3)