Apache NiFi
4 known vulnerabilities in Apache NiFi, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-86089 CVSS 2.3 low Apache NiFi 2.11.0 supports migrating the contents of a version-controlled Process Group into a Connector using REST API methods that list…
- CVE-2026-82561 CVSS 5.9 medium Apache NiFi 1.5.0 through 2.11.0 provide REST API methods that replace the entire contents of a Process Group using a client-supplied flow…
- CVE-2026-81866 CVSS 0.5 low Apache NiFi 2.9.0 through 2.11.0 provide Connector configuration update and verification REST API methods that do not enforce…
- CVE-2026-70469 CVSS 7.5 high Apache NiFi 2.11.0 disabled support for gzip-encoded HTTP requests for the application REST API and rejected requests that included the…