A vulnerability, which was classified as critical, was found in MISP up to 2.5.41. Affected is the function CRUDComponent::edit of the file /edit/import of the component REST Handler. Such manipulation leads to authorization bypass.

This vulnerability is listed as CVE-2026-56422. The attack may be performed from remote. There is no available exploit.

It is advisable to implement a patch to correct this issue.