This is an automated email from the ASF dual-hosted git repository.
github-bot pushed a commit to branch asf-site
in repository https://gitbox.apache.org/repos/asf/nifi-site.git
The following commit(s) were added to refs/heads/asf-site by this push:
new 7c5c523b Published changes from
ddc5d99ad662e07f7f4cc0d7fea63f86f46555ba
7c5c523b is described below
commit 7c5c523b6b3721a3de789bbc1521782f6f5d85e2
Author: github-actions[bot]
<41898282+github-actions[bot]@users.noreply.github.com>
AuthorDate: Tue Mar 11 15:23:32 2025 +0000
Published changes from ddc5d99ad662e07f7f4cc0d7fea63f86f46555ba
---
community/contact/index.html | 2 +-
community/index.html | 2 +-
development/index.html | 2 +-
documentation/guides/fds-releases/index.html | 2 +-
documentation/guides/index.html | 2 +-
documentation/guides/licensing/index.html | 2 +-
.../guides/maven-plugin-releases/index.html | 2 +-
documentation/guides/signing/index.html | 2 +-
documentation/index.html | 2 +-
documentation/security/index.html | 44 +++++++++++++++++++++-
projects/fds/index.html | 2 +-
sitemap.xml | 36 +++++++++---------
12 files changed, 71 insertions(+), 29 deletions(-)
diff --git a/community/contact/index.html b/community/contact/index.html
index 6aa00593..05b04eb5 100644
--- a/community/contact/index.html
+++ b/community/contact/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container">
- <h1 id="apache-hahahugoshortcode3s0hbhb-contact-information">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1 id="apache-hahahugoshortcode2s0hbhb-contact-information">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
Contact Information</h1>
<p>See the <a href="http://apache.org/foundation/mailinglists.html">Apache
Software Foundation Mailing List Tips</a> for
recommendations on how to interact with the community.</p>
diff --git a/community/index.html b/community/index.html
index 07be0d43..df7dd8e6 100644
--- a/community/index.html
+++ b/community/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container">
- <h1 id="apache-hahahugoshortcode2s0hbhb-team">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1 id="apache-hahahugoshortcode1s0hbhb-team">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
Team</h1>
<p>A successful project requires many people to play many roles. Some write
code, others provide project mentorship, and
still others author documentation. General contributors provide valuable
feedback, submitting patches and suggestions.</p>
diff --git a/development/index.html b/development/index.html
index d15fb64b..73129c4b 100644
--- a/development/index.html
+++ b/development/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container iframe-container">
- <h1 id="apache-hahahugoshortcode577s0hbhb-development">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1 id="apache-hahahugoshortcode572s0hbhb-development">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
Development</h1>
<h2 id="development-process">Development Process</h2>
<ul>
diff --git a/documentation/guides/fds-releases/index.html
b/documentation/guides/fds-releases/index.html
index 2f99535d..bd64e989 100644
--- a/documentation/guides/fds-releases/index.html
+++ b/documentation/guides/fds-releases/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container">
- <h1
id="apache-hahahugoshortcode574s0hbhb-flow-design-system-releases">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1
id="apache-hahahugoshortcode575s0hbhb-flow-design-system-releases">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
Flow Design System Releases</h1>
<p>The purpose of this document is to capture and describe the steps involved
in producing
an official release of Apache NiFi Flow Design System. It is written
specifically to someone acting in the
diff --git a/documentation/guides/index.html b/documentation/guides/index.html
index 37978ec8..737faf9f 100644
--- a/documentation/guides/index.html
+++ b/documentation/guides/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container iframe-container">
- <h1 id="apache-hahahugoshortcode573s0hbhb-guides">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1 id="apache-hahahugoshortcode579s0hbhb-guides">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
Guides</h1>
<h2 id="development-process">Development Process</h2>
<ul>
diff --git a/documentation/guides/licensing/index.html
b/documentation/guides/licensing/index.html
index 5f7f40da..f37b640f 100644
--- a/documentation/guides/licensing/index.html
+++ b/documentation/guides/licensing/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container">
- <h1 id="apache-hahahugoshortcode575s0hbhb-licensing">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1 id="apache-hahahugoshortcode576s0hbhb-licensing">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
Licensing</h1>
<p>This document provides guidance to contributors of Apache NiFi to help
properly account for licensing, notice, and legal requirements.</p>
<h4 id="disclaimer">Disclaimer:</h4>
diff --git a/documentation/guides/maven-plugin-releases/index.html
b/documentation/guides/maven-plugin-releases/index.html
index aa118b3b..6d821966 100644
--- a/documentation/guides/maven-plugin-releases/index.html
+++ b/documentation/guides/maven-plugin-releases/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container">
- <h1
id="apache-hahahugoshortcode576s0hbhb-nar-maven-plugin-releases">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1
id="apache-hahahugoshortcode577s0hbhb-nar-maven-plugin-releases">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
NAR Maven Plugin Releases</h1>
<p>The purpose of this document is to capture and describe the steps involved
in producing
an official release of Apache NiFi NAR Maven Plugin. It is written
specifically to someone acting in the
diff --git a/documentation/guides/signing/index.html
b/documentation/guides/signing/index.html
index f0fcc85f..596fe48c 100644
--- a/documentation/guides/signing/index.html
+++ b/documentation/guides/signing/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container">
- <h1
id="apache-hahahugoshortcode579s0hbhb-commit-and-release-signing">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1
id="apache-hahahugoshortcode578s0hbhb-commit-and-release-signing">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
Commit and Release Signing</h1>
<p>The purpose of this document is to capture and describe the steps involved
in generating and verifying cryptographic signatures of official releases of
Apache NiFi, as well as configuring cryptographic signatures of individual code
commits. It is written for contributors, committers, and users of Apache NiFi
(and related applications).</p>
<h2 id="a-nametable-of-contentstable-of-contentsa"><a
name="table-of-contents">Table of Contents</a></h2>
diff --git a/documentation/index.html b/documentation/index.html
index f6ddc6c2..e9d1088b 100644
--- a/documentation/index.html
+++ b/documentation/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container iframe-container">
- <h1 id="apache-hahahugoshortcode571s0hbhb-documentation">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1 id="apache-hahahugoshortcode573s0hbhb-documentation">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
Documentation</h1>
<h2 id="configuration-and-component-properties">Configuration and Component
Properties</h2>
<ul>
diff --git a/documentation/security/index.html
b/documentation/security/index.html
index f3d2f27c..1b169f8b 100644
--- a/documentation/security/index.html
+++ b/documentation/security/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container">
- <h1 id="apache-hahahugoshortcode572s0hbhb-security">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1 id="apache-hahahugoshortcode574s0hbhb-security">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
Security</h1>
<p>Apache NiFi welcomes the responsible reporting of security vulnerabilities.
Project Management Committee members will
collaborate and respond to potential vulnerabilities, providing an assessment
of the concern and a plan of action to
@@ -614,6 +614,48 @@ contrary to best practices, but it does not constitute of
security issue for rem
</ul>
<h1 id="published-vulnerabilities">Published Vulnerabilities</h1>
<p>The following announcements include published vulnerabilities that apply
directly to Apache NiFi components.</p>
+<div class="vulnerability-container">
+ <h3 id="CVE-2025-27017">CVE-2025-27017</h3>
+
+ <ul>
+ <li>Title: Potential Insertion of MongoDB Password in Provenance
Record</li>
+ <li>Published: 2025-03-11</li>
+ <li>Severity: Medium</li>
+ <li>Products: Apache NiFi</li>
+ <li>Affected Versions: 1.13.0 to 2.2.0</li>
+ <li>Fixed Versions: 2.3.0</li>
+ <li>Reporter: Robert Creese</li>
+ <li>References
+ <ul>
+ <li>
+ CVE Record: <a
href="https://www.cve.org/CVERecord?id=CVE-2025-27017"
target="_blank">CVE-2025-27017</a>
+ </li>
+ <li>
+ NVD Record: <a
href="https://nvd.nist.gov/vuln/detail/CVE-2025-27017"
target="_blank">CVE-2025-27017</a>
+ </li>
+ <li>
+ Apache Jira Issue: <a
href="https://issues.apache.org/jira/browse/NIFI-14272"
target="_blank">NIFI-14272</a>
+ </li>
+
+ <li>
+ GitHub Pull Request: <a
href="https://github.com/apache/nifi/pull/9723" target="_blank">9723</a>
+ </li>
+
+ </ul>
+ </li>
+ </ul>
+
+ <p class="vulnerability-description">
+
+
+Apache NiFi 1.13.0 through 2.2.0 includes the username and password used to
authenticate with MongoDB in the NiFi
+provenance events that MongoDB components generate during processing. An
authorized user with read access to the
+provenance events of those processors may see the credentials information.
Upgrading to Apache NiFi 2.3.0 is the
+recommended mitigation, which removes the credentials from provenance event
records.
+
+
+ </p>
+</div>
<div class="vulnerability-container">
<h3 id="CVE-2024-56512">CVE-2024-56512</h3>
diff --git a/projects/fds/index.html b/projects/fds/index.html
index d98415be..c432e3f9 100644
--- a/projects/fds/index.html
+++ b/projects/fds/index.html
@@ -563,7 +563,7 @@
</div>
<main>
<div class="uk-container">
- <h1 id="apache-hahahugoshortcode585s0hbhb-flow-design-system">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
+ <h1 id="apache-hahahugoshortcode583s0hbhb-flow-design-system">Apache <span
class="ni">Ni</span><span class="fi">Fi</span>
Flow Design System</h1>
<p class="description">
A subproject of Apache NiFi to provide a consistent user experience across
the various web applications within the NiFi ecosystem.
diff --git a/sitemap.xml b/sitemap.xml
index b7e8b0a2..91117999 100644
--- a/sitemap.xml
+++ b/sitemap.xml
@@ -9,7 +9,7 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.aws.schemaregistry.AmazonGlueSchemaRegistry/</loc>
</url><url>
<loc>https://nifi.apache.org/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.apicurio.schemaregistry.ApicurioSchemaRegistry/</loc>
</url><url>
@@ -54,10 +54,10 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.cef.CEFReader/</loc>
</url><url>
<loc>https://nifi.apache.org/documentation/guides/signing/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/community/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/</loc>
</url><url>
@@ -102,7 +102,7 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.windows.event.log.ConsumeWindowsEventLog/</loc>
</url><url>
<loc>https://nifi.apache.org/community/contact/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.controller.ControllerStatusReportingTask/</loc>
</url><url>
@@ -173,7 +173,7 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.box.controllerservices.DeveloperBoxClientService/</loc>
</url><url>
<loc>https://nifi.apache.org/development/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.flowanalysis.rules.DisallowComponentType/</loc>
</url><url>
@@ -182,13 +182,13 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.standard.DistributeLoad/</loc>
</url><url>
<loc>https://nifi.apache.org/documentation/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/documentation/v1/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/download/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.standard.DuplicateFlowFile/</loc>
</url><url>
@@ -283,10 +283,10 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.standard.FlattenJson/</loc>
</url><url>
<loc>https://nifi.apache.org/projects/fds/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/documentation/guides/fds-releases/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.standard.ForkEnrichment/</loc>
</url><url>
@@ -373,7 +373,7 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.grok.GrokReader/</loc>
</url><url>
<loc>https://nifi.apache.org/documentation/guides/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.standard.HandleHttpRequest/</loc>
</url><url>
@@ -434,7 +434,7 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.parameter.KubernetesSecretParameterProvider/</loc>
</url><url>
<loc>https://nifi.apache.org/documentation/guides/licensing/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.azure.storage.ListAzureBlobStorage_v12/</loc>
</url><url>
@@ -499,7 +499,7 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.standard.MergeRecord/</loc>
</url><url>
<loc>https://nifi.apache.org/projects/minifi/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.standard.ModifyBytes/</loc>
</url><url>
@@ -518,7 +518,7 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.azure.storage.MoveAzureDataLakeStorage/</loc>
</url><url>
<loc>https://nifi.apache.org/documentation/guides/maven-plugin-releases/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.standard.Notify/</loc>
</url><url>
@@ -541,10 +541,10 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.ssl.PEMEncodedSSLContextProvider/</loc>
</url><url>
<loc>https://nifi.apache.org/community/powered-by/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/projects/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.lookup.PropertiesFileLookupService/</loc>
</url><url>
@@ -675,7 +675,7 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.redis.service.RedisDistributedMapCacheClientService/</loc>
</url><url>
<loc>https://nifi.apache.org/projects/registry/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.standard.RemoveRecordField/</loc>
</url><url>
@@ -732,7 +732,7 @@
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.elasticsearch.SearchElasticsearch/</loc>
</url><url>
<loc>https://nifi.apache.org/documentation/security/</loc>
- <lastmod>2025-03-11T12:21:22+01:00</lastmod>
+ <lastmod>2025-03-11T16:22:40+01:00</lastmod>
</url><url>
<loc>https://nifi.apache.org/components/org.apache.nifi.processors.standard.SegmentContent/</loc>
</url><url>