ZeroHour

CVE-2017-7665

CVSS 3.0
6.1 medium
EPSS
4%p88
Published
()
Modified
Description

In Apache NiFi before 0.7.4 and 1.x before 1.3.0, there are certain user input components in the UI which had been guarding for some forms of XSS issues but were insufficient.

Vendors
apache
Products
nifi
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.