๐Ÿ” CVE Alert

CVE-2026-44379

UNKNOWN 0.0

MISP: Improper UUID validation in MISP Collections

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

MISP is an open source threat intelligence and sharing platform. Prior to 2.5.37, MISP Collections did not enforce RFC 4122 UUID validation on the uuid field. As a result, a user able to create or modify Collection records could submit malformed UUID values, potentially causing integrity issues or unexpected behaviour in code paths that assume Collection UUIDs are valid identifiers. This vulnerability is fixed in 2.5.37.

CWE CWE-20
Vendor misp
Product misp
Published May 13, 2026
Stay Ahead of the Next One

Get instant alerts for misp misp

Be the first to know when new unknown vulnerabilities affecting misp misp are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

MISP / MISP
< 2.5.37

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/MISP/MISP/security/advisories/GHSA-jrvj-84mg-8f29 github.com: https://github.com/MISP/MISP/commit/f8b20358c3cd8fd3d784452901876f2db0acbf05