In Apache NiFi before 0.7.4 and 1.x before 1.3.0, there are certain user input components in the UI which had been guarding for some forms of XSS issues but were insufficient.
| Software | From | Fixed in |
|---|---|---|
| apache / nifi | 1.1.0 | 1.1.0.x |
| apache / nifi | 1.1.1 | 1.1.1.x |
| apache / nifi | 1.0.0 | 1.0.0.x |
| apache / nifi | - | 0.7.3.x |
| apache / nifi | 1.1.2 | 1.1.2.x |
| apache / nifi | 1.2.0 | 1.2.0.x |
| apache / nifi | 1.0.1 | 1.0.1.x |
org.apache.nifi / nifi
|
- | 0.7.4 |
org.apache.nifi / nifi
|
1.0.0 | 1.3.0 |