In MISP before 2.4.105, the app/View/Layouts/default.ctp default layout template has a Reflected XSS vulnerability.Referenceshttps://github.com/MISP/MISP/commit/586cca384be6710b03e14bcbeb7588c1772604echttps://github.com/MISP/MISP/compare/f493659...0e4f66e