Known vulnerabilities in Apache Foundation Apache Nifi 1.22.0

Website: https://www.apache.org
Total Security Bulletins: 8

Security bulletins (8)

Secuity bulletin Severity Status Published
SB2025122302: Remote code execution in Apache NiFi Medium
Patched
23.12.2025
SB2025032715: MongoDB credentials disclosure in Apache NiFi Low
Patched
27.03.2025
SB2024122803: Missing authorization in Apache NiFi Low
Patched Public exploit
28.12.2024
SB2024112111: Inclusion of sensitive information into log files in Apache NiFi Low
Patched
21.11.2024
SB2024102861: Stored XSS in Apache NiFi Low
Patched
28.10.2024
SB2024071080: Stored cross-site scripting in Apache Nifi Low
Patched
10.07.2024
SB2023112854: Cross-site scripting in Apache NiFi Low
Patched
28.11.2023
SB2023080112: Privilege escalation in Apache NiFi Low
Patched
01.08.2023