PT-2026-51311 · Misp · Misp

·

CVE-2026-56447

·

Published

2026-06-22

·

Updated

2026-06-23

CVSS v4.0

9.3

Critical

VectorAV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N
Name of the Vulnerable Software and Affected Versions MISP (affected versions not specified)
Description An authenticated site administrator can set the Kafka rdkafka config setting to an arbitrary filesystem path. The system parses the referenced INI file and passes its options to rdkafka. By using a crafted configuration file hosted in a MISP-writable location, such as an uploaded file or administrative image, an attacker can use rdkafka options like plugin.library.paths to load an external library, leading to arbitrary code execution with the privileges of the MISP process.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-56447

Affected Products

Misp