THREAT OPS › Threat News › CVE-2026-86089: Apache NiFi: Missing Process Group Authorization for Connector Migration
CVE-2026-86089: Apache NiFi: Missing Process Group Authorization for Connector Migration
<p>Posted by David Handermann on Sep 16</p>Severity: Low <br /> <br /> Affected versions:<br /> <br /> - Apache NiFi (org.apache.nifi:nifi-web-api) 2.11.0<br /> <br /> Description:<br /> <br /> Apache NiFi 2.11.0 supports migrating the contents of a version-controlled Process Group into a Connector using REST <br /> API methods that list eligible migration sources and submit migration requests. Th
Indicators of compromise
- CVE-2026-86089cve
Original source: https://seclists.org/oss-sec/2026/q3/807