CVE-2017-16802
In the sharingGroupPopulateOrganisations function in app/webroot/js/misp.js in MISP 2.4.82, there is XSS via a crafted organisation name that is manually added.
Date published : 2017-11-13
https://github.com/MISP/MISP/commit/a659664447a7b2a383cb9e0f6b43dcb43ec69194
