Created 12-11-2025 02:56 AM
Hello,
I've installed nifi 2.6 registry security - then I've scanned it in AWS Inspector, it shows me the following results:
0 Critical.
12 High.
12 Medium.
Could anyoune confrim the results? And if this is a stable security version?
Created 12-11-2025 07:14 AM
Hello @fy-test,
Thanks for being part of our community.
That could be something normal, NiFi Registry 2.6 is a stable version released on September 21st.
https://cwiki.apache.org/confluence/display/NIFI/Release+Notes#ReleaseNotes-Version2.6.0
Now, those results can be true, but the scanner should tell the CVE-XXXX-XXX IDs
With those you can review if they are reported or not.
If you are using CDF you can open a case with Cloudera and report those CVEs for review.
Created 12-16-2025 10:58 AM
Thank you for the guidance. Here are the specific CVEs identified by AWS Inspector in our NiFi Registry 2.6 scan:
High Severity (12):
Medium Severity (12):
Observations:
Questions:
Any guidance would be appreciated.