Back to Vulnerability Directory
MEDIUMFixed upstream
CVE-2025-27017
Apache NiFi: MongoDB password can be written to a provenance record
Technology
Apache NiFi
CVSS Score
6.5 / 10.0
Affected Versions
1.13.0 to 2.2.0
Upstream Fix
2.3.0
Published
March 12, 2025
OSSeva Coverage
Fixed upstream
Is your Apache NiFi deployment affected?
If you're running 1.13.0 to 2.2.0, you need this patch. Book a discovery call to get covered.