
Apache NiFi Vulnerabilities Allow Authorization Bypass and Remote Code Execution
Apache NiFi has disclosed four security vulnerabilities affecting its web API, including authorization-bypass flaws, a potential remote code execution pathway, and a resource-exhaustion issue involving gzip-compressed REST requests. Organizations running affected Apache NiFi releases should upgrade to version 2.11.0, which addresses all reported issues. The most severe issue, tracked as CVE-2026-68981 and NIFI-16152, affects NiFi […]
The post Apache NiFi Vulnerabilities Allow Authorization Bypass and Remote Code Execution appeared first on Cyber Security News.