Reflected cross-site scripting (XSS) In org.apache.nifi:nifi
Description
Cross-site Scripting in Apache NiFi In Apache NiFi before 0.7.4 and 1.x before 1.3.0, there are certain user input components in the UI which had been guarding for some forms of XSS issues but were insufficient.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
maven | 0.7.4, 1.3.0 |
Aliases
1. 2. 3. 4.
References
1. 2.