CVE-2026-10854 | MISP up to 2.5.38 Setting information disclosure
A vulnerability labeled as problematic has been found in MISP up to 2.5.38. Affected by this issue is some unknown functionality of the component Setting Handler. Such manipulation leads to information disclosure.
This vulnerability is documented as CVE-2026-10854. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.