Vulnerabilities > Apache > Nifi > 1.23.2

DATE CVE VULNERABILITY TITLE RISK
2023-11-27 CVE-2023-49145 Cross-site Scripting vulnerability in Apache Nifi
Apache NiFi 0.7.0 through 1.23.2 include the JoltTransformJSON Processor, which provides an advanced configuration user interface that is vulnerable to DOM-based cross-site scripting.
network
low complexity
apache CWE-79
5.4