org.apache.nifi:nifi-framework-core
Maven2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting org.apache.nifi:nifi-framework-corepage 1 of 1
- CVE-2020-1942HIGHCVSS 7.5EG 7.5✓ Fixed in 1.12.0-RC12020-02-11
vulnerable: 0.0.1-incubating ... 1.9.2 (40 versions)
In Apache NiFi 0.0.1 to 1.11.0, the flow fingerprint factory generated flow fingerprints which included sensitive property descriptor values. In the event a node attempted to join a cluster and the cluster flow was not inheritable, the flo…
- CVE-2024-52067MEDIUMCVSS 4.9EG 4.9✓ Fixed in 2.0.02024-11-21
vulnerable: 2.0.0-M1, 2.0.0-M2, 2.0.0-M3, 2.0.0-M4
Apache NiFi 1.16.0 through 1.28.0 and 2.0.0-M1 through 2.0.0-M4 include optional debug logging of Parameter Context values during the flow synchronization process. An authorized administrator with access to change logging levels could enab…
Check whether org.apache.nifi:nifi-framework-core is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for org.apache.nifi:nifi-framework-core CVEs against the assets you own.
Start Free Scan →