CVE-2019-10083 is a vulnerability in Apache NiFi
Published on November 19, 2019
When updating a Process Group via the API in NiFi versions 1.3.0 to 1.9.2, the response to the request includes all of its contents (at the top most level, not recursively). The response included details about processors and controller services which the user may not have had read access to.
Products Associated with CVE-2019-10083
Want to know whenever a new CVE is published for Apache NiFi? stack.watch will email you.
Exploit Probability
EPSS
1.19%
Percentile
78.56%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.