CVE-2026-44379
MISP: Improper UUID validation in MISP Collections
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
MISP is an open source threat intelligence and sharing platform. Prior to 2.5.37, MISP Collections did not enforce RFC 4122 UUID validation on the uuid field. As a result, a user able to create or modify Collection records could submit malformed UUID values, potentially causing integrity issues or unexpected behaviour in code paths that assume Collection UUIDs are valid identifiers. This vulnerability is fixed in 2.5.37.
| CWE | CWE-20 |
| Vendor | misp |
| Product | misp |
| Published | May 13, 2026 |
Stay Ahead of the Next One
Get instant alerts for misp misp
Be the first to know when new unknown vulnerabilities affecting misp misp are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
MISP / MISP
< 2.5.37