VendorsApachenifi_registryany version
Vulnerabilities

Apache Software Foundation NiFi Registry any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2022-33140
Improper Neutralization of Command Elements in Shell User Group Provider
Published 2022-06-15 · Modified
8.8EPSS 0.037
CVE-2020-9482
If NiFi Registry 0.1.0 to 0.5.0 uses an authentication mechanism other than PKI, when the user clicks Log Out, NiFi Registry invalidates the authentication token on the client side but not on the server side. This permits the user's client-side token to be used for up to 12 hours after logging out to make API requests to NiFi Registry.
Published 2020-04-28 · Modified
6.5EPSS 0.027