• caglararli@hotmail.com
  • 05386281520

CVE-2024-37389 | Apache NiFi up to 1.26.0/2.0.0-M3 Parameter Context Configuration description cross site scripting (NIFI-13374)

Çağlar Arlı      -    20 Views

CVE-2024-37389 | Apache NiFi up to 1.26.0/2.0.0-M3 Parameter Context Configuration description cross site scripting (NIFI-13374)

A vulnerability was found in Apache NiFi up to 1.26.0/2.0.0-M3. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Parameter Context Configuration. The manipulation of the argument description leads to cross site scripting. This vulnerability is handled as CVE-2024-37389. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected component.