CVE-2021-44145
17.12.2021, 09:15
In the TransformXML processor of Apache NiFi before 1.15.1 an authenticated user could configure an XSLT file which, if it included malicious external entity calls, may reveal sensitive information.Enginsight
Vendor | Product | Version |
---|---|---|
apache | nifi | 0.1.0 ≤ 𝑥 < 1.15.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration