Security vulnerability affects the apache-nifi package. The fix for CVE-2026-41409 was not applied to the 2.
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-YI69310.json"