A vulnerability, which was classified as critical , was found in MISP up to 2.5.41 . Affected is the function CRUDComponent::edit of the file /edit/import of the component REST Handler . Such manipulation leads to authorization bypass. This vulnerability is listed as CVE-2026-56422 . The attack may be performed from remote. There is no available exploit. It is advisable to implement a patch to correct this issue.