CVE-2026-85237 | MISP up to 2.5.44 Email OTP email_otp excessive authentication (8658062ea / WID-SEC-2026-3173)
A vulnerability was found in MISP up to 2.5.44. It has been rated as problematic. Affected by this vulnerability is the function email_otp of the component Email OTP. Performing a manipulation results in improper restriction of excessive authentication attempts.
This vulnerability is known as CVE-2026-85237. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is advised.