CVE-2026-56423 - MISP Core: Broken access control allows instance-wide unauthorized deletion of event reports and sharing groups via bulk deletion endpoints
CVE ID :CVE-2026-56423 Published : June 22, 2026, 11:56 a.m. | 3 hours, 13 minutes ago Description :MISP Core contained broken access-control checks in the bulk deletion flows for Event Reports and Sharing Groups. The affected deleteSelection handlers authorized deletion using broad...