Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
MINI-w2qr-96mf-xcp2
  • MinimOS/keycloak-config-cli
See record for full details 02 Jun
  • No fix available
MINI-p696-f83h-556f
  • MinimOS/keycloak-config-cli-fips
See record for full details 02 Jun
  • No fix available
CLEANSTART-2026-DY69070
  • CleanStart/apache-nifi
Security fixes for CVE-2026-1605, CVE-2026-22732, CVE-2026-24281, CVE-2026-33870, CVE-2026-33871, CVE-2026-3505, CVE-2026-5588, ghsa-2m67-wjpj-xhg9, ghsa-3677-xxcr-wjqv, ghsa-6v53-7c9g-w56r, ghsa-72hv-8253-57qq, ghsa-c3fc-8qff-9hwx, ghsa-p93r-85wp-75v3, ghsa-qqpg-mvqg-649v, ghsa-wg6q-6289-32hp, ghsa-x2wq-9x2f-fhj7, ghsa-x44p-gvrj-pj2r applied in versions: 2.6.0-r0, 2.7.2-r0, 2.7.2-r2 18 May
  • Fix available
CLEANSTART-2026-GN46454
  • CleanStart/apache-nifi
When applications specify HTTP response headers for servlet applications using Spring Security, there is the possibility that the HTTP Headers will not be written 30 Apr
  • Fix available
  • Severity - 9.8 (Critical)
MINI-v362-g9x2-29wh
  • MinimOS/apache-nifi
  • MinimOS/apache-nifi-compat
  • MinimOS/apache-nifi-toolkit
See record for full details 12 Apr
  • Fix available
MINI-4m96-q568-8j46
  • MinimOS/apache-nifi-registry
  • MinimOS/apache-nifi-registry-toolkit
See record for full details 12 Apr
  • Fix available
CVE-2026-29062
  • github.com/fasterxml/jackson-core
jackson-core: Nesting Depth Constraint Bypass in `UTF8DataInputJsonParser` potentially allowing Resource Exhaustion 06 Mar
  • Fix available
  • Severity - 8.7 (High)
GHSA-6v53-7c9g-w56r
  • Maven/tools.jackson.core:jackson-core
jackson-core has Nesting Depth Constraint Bypass in `UTF8DataInputJsonParser` potentially allowing Resource Exhaustion 04 Mar
  • Fix available
  • Severity - 8.7 (High)