← Back to CVE List

CVE-2020-9486

Published: 2020-10-01T20:15Z
Last Modified: 2024-11-21T05:40Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In Apache NiFi 1.10.0 to 1.11.4, the NiFi stateless execution engine produced log output which included sensitive property values. When a flow was triggered, the flow definition configuration JSON was printed, potentially containing sensitive values in plaintext. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt