CVE-2017-7667

HIGH7.5EPSS 0.39%

Origin Validation Error in Apache NiFi

Published: 5/17/2022Modified: 11/8/2023

Description

Apache NiFi before 0.7.4 and 1.x before 1.3.0 need to establish the response header telling browsers to only allow framing with the same origin.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.5CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

References (3)