application using Spring Security's WebAuthn support may be vulnerable to user verification bypass when using a distributed HTTP session store
Details
Security vulnerability affects the apache-nifi-registry package. An application using Spring Security's WebAuthn support may be vulnerable to user verification bypass when using a distributed HTTP session store.