You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@nifi.apache.org by jo...@apache.org on 2022/01/18 16:42:59 UTC

svn commit: r1897177 - in /nifi/site/trunk: download.html minifi/download.html registry.html security.html

Author: joewitt
Date: Tue Jan 18 16:42:59 2022
New Revision: 1897177

URL: http://svn.apache.org/viewvc?rev=1897177&view=rev
Log:
NIFI-9567

Modified:
    nifi/site/trunk/download.html
    nifi/site/trunk/minifi/download.html
    nifi/site/trunk/registry.html
    nifi/site/trunk/security.html

Modified: nifi/site/trunk/download.html
URL: http://svn.apache.org/viewvc/nifi/site/trunk/download.html?rev=1897177&r1=1897176&r2=1897177&view=diff
==============================================================================
--- nifi/site/trunk/download.html (original)
+++ nifi/site/trunk/download.html Tue Jan 18 16:42:59 2022
@@ -129,30 +129,30 @@
     <div class="large-12 columns">
         <h2>Releases</h2>
         <ul>
-            <li><h3>1.15.2</h3>
+            <li><h3>1.15.3</h3>
                 <ul>
-                    <li>Released December 22nd, 2021</li>
+                    <li>Released January 18, 20222</li>
                     <li>
                         Sources:
                         <ul>
-                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/nifi-1.15.2-source-release.zip">nifi-1.15.2-source-release.zip</a> ( <a href="https://downloads.apache.org/nifi/1.15.2/nifi-1.15.2-source-release.zip.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-1.15.2-source-release.zip.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-1.15.2-source-release.zip.sha512">sha512</a> )</li>
+                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/nifi-1.15.3-source-release.zip">nifi-1.15.3-source-release.zip</a> ( <a href="https://downloads.apache.org/nifi/1.15.3/nifi-1.15.3-source-release.zip.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-1.15.3-source-release.zip.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-1.15.3-source-release.zip.sha512">sha512</a> )</li>
                         </ul>
                     </li>
                     <li>
                         Binaries
                         <ul>
-                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/nifi-1.15.2-bin.tar.gz">nifi-1.15.2-bin.tar.gz</a> ( <a href="https://downloads.apache.org/nifi/1.15.2/nifi-1.15.2-bin.tar.gz.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-1.15.2-bin.tar.gz.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-1.15.2-bin.tar.gz.sha512">sha512</a> )</li>
+                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/nifi-1.15.3-bin.tar.gz">nifi-1.15.3-bin.tar.gz</a> ( <a href="https://downloads.apache.org/nifi/1.15.3/nifi-1.15.3-bin.tar.gz.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-1.15.3-bin.tar.gz.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-1.15.3-bin.tar.gz.sha512">sha512</a> )</li>
 
-                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/nifi-1.15.2-bin.zip">nifi-1.15.2-bin.zip</a> ( <a href="https://downloads.apache.org/nifi/1.15.2/nifi-1.15.2-bin.zip.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-1.15.2-bin.zip.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-1.15.2-bin.zip.sha512">sha512</a> )</li>
+                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/nifi-1.15.3-bin.zip">nifi-1.15.3-bin.zip</a> ( <a href="https://downloads.apache.org/nifi/1.15.3/nifi-1.15.3-bin.zip.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-1.15.3-bin.zip.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-1.15.3-bin.zip.sha512">sha512</a> )</li>
 
 
-                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/nifi-toolkit-1.15.2-bin.tar.gz">nifi-toolkit-1.15.2-bin.tar.gz</a> ( <a href="https://downloads.apache.org/nifi/1.15.2/nifi-toolkit-1.15.2-bin.tar.gz.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-toolkit-1.15.2-bin.tar.gz.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-toolkit-1.15.2-bin.tar.gz.sha512">sha512</a> )</li>
+                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/nifi-toolkit-1.15.3-bin.tar.gz">nifi-toolkit-1.15.3-bin.tar.gz</a> ( <a href="https://downloads.apache.org/nifi/1.15.3/nifi-toolkit-1.15.3-bin.tar.gz.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-toolkit-1.15.3-bin.tar.gz.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-toolkit-1.15.3-bin.tar.gz.sha512">sha512</a> )</li>
 
-                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/nifi-toolkit-1.15.2-bin.zip">nifi-toolkit-1.15.2-bin.zip</a> ( <a href="https://downloads.apache.org/nifi/1.15.2/nifi-toolkit-1.15.2-bin.zip.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-toolkit-1.15.2-bin.zip.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-toolkit-1.15.2-bin.zip.sha512">sha512</a> )</li>
-                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/nifi-stateless-1.15.2-bin.tar.gz">nifi-stateless-1.15.2-bin.tar.gz</a> ( <a href="https://downloads.apache.org/nifi/1.15.2/nifi-stateless-1.15.2-bin.tar.gz.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-stateless-1.15.2-bin.tar.gz.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.2/nifi-stateless-1.15.2-bin.tar.gz.sha512">sha512</a> )</li>
+                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/nifi-toolkit-1.15.3-bin.zip">nifi-toolkit-1.15.3-bin.zip</a> ( <a href="https://downloads.apache.org/nifi/1.15.3/nifi-toolkit-1.15.3-bin.zip.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-toolkit-1.15.3-bin.zip.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-toolkit-1.15.3-bin.zip.sha512">sha512</a> )</li>
+                            <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/nifi-stateless-1.15.3-bin.tar.gz">nifi-stateless-1.15.3-bin.tar.gz</a> ( <a href="https://downloads.apache.org/nifi/1.15.3/nifi-stateless-1.15.3-bin.tar.gz.asc">asc</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-stateless-1.15.3-bin.tar.gz.sha256">sha256</a>, <a href="https://downloads.apache.org/nifi/1.15.3/nifi-stateless-1.15.3-bin.tar.gz.sha512">sha512</a> )</li>
                         </ul>
                     </li>
-                    <li><a href="https://cwiki.apache.org/confluence/display/NIFI/Release+Notes#ReleaseNotes-Version1.15.2">Release Notes</a></li>
+                    <li><a href="https://cwiki.apache.org/confluence/display/NIFI/Release+Notes#ReleaseNotes-Version1.15.3">Release Notes</a></li>
                     <li><a href="https://cwiki.apache.org/confluence/display/NIFI/Migration+Guidance">Migration Guidance</a></li>
                 </ul>
             </li>

Modified: nifi/site/trunk/minifi/download.html
URL: http://svn.apache.org/viewvc/nifi/site/trunk/minifi/download.html?rev=1897177&r1=1897176&r2=1897177&view=diff
==============================================================================
--- nifi/site/trunk/minifi/download.html (original)
+++ nifi/site/trunk/minifi/download.html Tue Jan 18 16:42:59 2022
@@ -124,7 +124,7 @@
         <h2>Releases</h2>
         <h3>MiNiFi (Java)</h3>
         <ul>
-          <li>1.15.2
+          <li>1.15.3
               <ul>
                       Sources:
                       <ul>
@@ -135,17 +135,17 @@
                   <li>
                       Binaries
                       <ul>
-                          <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/minifi-1.15.2-bin.tar.gz">minifi-1.15.2-bin.tar.gz</a>
-                            ( <a href="https://downloads.apache.org/nifi/1.15.2/minifi-1.15.2-bin.tar.gz.asc">asc</a>,
-                              <a href="https://downloads.apache.org/nifi/1.15.2/minifi-1.15.2-bin.tar.gz.sha256">sha256</a> )
-                          </li>
-                          <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/minifi-1.15.2-bin.zip">minifi-1.15.2-bin.zip</a>
-                            ( <a href="https://downloads.apache.org/nifi/1.15.2/minifi-1.15.2-bin.zip.asc">asc</a>,
-                              <a href="https://downloads.apache.org/nifi/1.15.2/minifi-1.15.2-bin.zip.sha256">sha256</a> )
+                          <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/minifi-1.15.3-bin.tar.gz">minifi-1.15.3-bin.tar.gz</a>
+                            ( <a href="https://downloads.apache.org/nifi/1.15.3/minifi-1.15.3-bin.tar.gz.asc">asc</a>,
+                              <a href="https://downloads.apache.org/nifi/1.15.3/minifi-1.15.3-bin.tar.gz.sha256">sha256</a> )
+                          </li>
+                          <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/minifi-1.15.3-bin.zip">minifi-1.15.3-bin.zip</a>
+                            ( <a href="https://downloads.apache.org/nifi/1.15.3/minifi-1.15.3-bin.zip.asc">asc</a>,
+                              <a href="https://downloads.apache.org/nifi/1.15.3/minifi-1.15.3-bin.zip.sha256">sha256</a> )
                       </ul>
                   </li>
 
-                  <li><a href="https://cwiki.apache.org/confluence/display/NIFI/Release+Notes#ReleaseNotes-Version1.15.2">Release Notes</a></li>
+                  <li><a href="https://cwiki.apache.org/confluence/display/NIFI/Release+Notes#ReleaseNotes-Version1.15.3">Release Notes</a></li>
               </ul>
           </li>
         </ul>
@@ -218,32 +218,32 @@
         </ul>
         <h3>MiNiFi Toolkit Binaries</h3>
         <ul>
-          <li>1.15.2
+          <li>1.15.3
             <ul>
               <li>
-                <a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/minifi-toolkit-1.15.2-bin.tar.gz">minifi-toolkit-1.15.2-bin.tar.gz</a>
-                ( <a href="https://downloads.apache.org/nifi/1.15.2/minifi-toolkit-1.15.2-bin.tar.gz.asc">asc</a>,
-                  <a href="https://downloads.apache.org/nifi/1.15.2/minifi-toolkit-1.15.2-bin.tar.gz.sha256">sha256</a> )
+                <a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/minifi-toolkit-1.15.3-bin.tar.gz">minifi-toolkit-1.15.3-bin.tar.gz</a>
+                ( <a href="https://downloads.apache.org/nifi/1.15.3/minifi-toolkit-1.15.3-bin.tar.gz.asc">asc</a>,
+                  <a href="https://downloads.apache.org/nifi/1.15.3/minifi-toolkit-1.15.3-bin.tar.gz.sha256">sha256</a> )
               </li>
-              <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/minifi-toolkit-1.15.2-bin.zip">minifi-toolkit-1.15.2-bin.zip</a>
-                ( <a href="https://downloads.apache.org/nifi/1.15.2/minifi-toolkit-1.15.2-bin.zip.asc">asc</a>,
-                  <a href="https://downloads.apache.org/nifi/1.15.2/minifi-toolkit-1.15.2-bin.zip.sha256">sha256</a> )
+              <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/minifi-toolkit-1.15.3-bin.zip">minifi-toolkit-1.15.3-bin.zip</a>
+                ( <a href="https://downloads.apache.org/nifi/1.15.3/minifi-toolkit-1.15.3-bin.zip.asc">asc</a>,
+                  <a href="https://downloads.apache.org/nifi/1.15.3/minifi-toolkit-1.15.3-bin.zip.sha256">sha256</a> )
               </li>
             </ul>
           </li>
         </ul>
         <h3>MiNiFi Command and Control Server Binaries</h3>
         <ul>
-          <li>1.15.2
+          <li>1.15.3
             <ul>
               <li>
-                <a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/minifi-c2-1.15.2-bin.tar.gz">minifi-c2-1.15.2-bin.tar.gz</a>
-                ( <a href="https://downloads.apache.org/nifi/1.15.2/minifi-c2-1.15.2-bin.tar.gz.asc">asc</a>,
-                  <a href="https://downloads.apache.org/nifi/1.15.2/minifi-c2-1.15.2-bin.tar.gz.sha256">sha256</a> )
+                <a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/minifi-c2-1.15.3-bin.tar.gz">minifi-c2-1.15.3-bin.tar.gz</a>
+                ( <a href="https://downloads.apache.org/nifi/1.15.3/minifi-c2-1.15.3-bin.tar.gz.asc">asc</a>,
+                  <a href="https://downloads.apache.org/nifi/1.15.3/minifi-c2-1.15.3-bin.tar.gz.sha256">sha256</a> )
               </li>
-              <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/minifi-c2-1.15.2-bin.zip">minifi-c2-1.15.2-bin.zip</a>
-                ( <a href="https://downloads.apache.org/nifi/1.15.2/minifi-c2-1.15.2-bin.zip.asc">asc</a>,
-                  <a href="https://downloads.apache.org/nifi/1.15.2/minifi-c2-1.15.2-bin.zip.sha256">sha256</a> )
+              <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/minifi-c2-1.15.3-bin.zip">minifi-c2-1.15.3-bin.zip</a>
+                ( <a href="https://downloads.apache.org/nifi/1.15.3/minifi-c2-1.15.3-bin.zip.asc">asc</a>,
+                  <a href="https://downloads.apache.org/nifi/1.15.3/minifi-c2-1.15.3-bin.zip.sha256">sha256</a> )
               </li>
             </ul>
           </li>

Modified: nifi/site/trunk/registry.html
URL: http://svn.apache.org/viewvc/nifi/site/trunk/registry.html?rev=1897177&r1=1897176&r2=1897177&view=diff
==============================================================================
--- nifi/site/trunk/registry.html (original)
+++ nifi/site/trunk/registry.html Tue Jan 18 16:42:59 2022
@@ -172,7 +172,7 @@
               </p>
               <ul>
                   <li>
-                      1.15.2
+                      1.15.3
                       <ul>
                           <li>
                               Sources
@@ -183,18 +183,18 @@
                           <li>
                               Binaries
                               <ul>
-                                  <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/nifi-registry-1.15.2-bin.tar.gz">nifi-registry-1.15.2-bin.tar.gz</a> (
-                                      <a href="https://downloads.apache.org/nifi/1.15.2/nifi-registry-1.15.2-bin.tar.gz.asc">asc</a>,
-                                      <a href="https://downloads.apache.org/nifi/1.15.2/nifi-registry-1.15.2-bin.tar.gz.sha256">sha256</a>,
-                                      <a href="https://downloads.apache.org/nifi/1.15.2/nifi-registry-1.15.2-bin.tar.gz.sha512">sha512</a> )</li>
+                                  <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/nifi-registry-1.15.3-bin.tar.gz">nifi-registry-1.15.3-bin.tar.gz</a> (
+                                      <a href="https://downloads.apache.org/nifi/1.15.3/nifi-registry-1.15.3-bin.tar.gz.asc">asc</a>,
+                                      <a href="https://downloads.apache.org/nifi/1.15.3/nifi-registry-1.15.3-bin.tar.gz.sha256">sha256</a>,
+                                      <a href="https://downloads.apache.org/nifi/1.15.3/nifi-registry-1.15.3-bin.tar.gz.sha512">sha512</a> )</li>
 
-                                  <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.2/nifi-registry-1.15.2-bin.zip">nifi-registry-1.15.2-bin.zip</a> (
-                                      <a href="https://downloads.apache.org/nifi/1.15.2/nifi-registry-1.15.2-bin.zip.asc">asc</a>,
-                                      <a href="https://downloads.apache.org/nifi/1.15.2/nifi-registry-1.15.2-bin.zip.sha256">sha256</a>,
-                                      <a href="https://downloads.apache.org/nifi/1.15.2/nifi-registry-1.15.2-bin.zip.sha512">sha512</a> )</li>
+                                  <li><a href="https://www.apache.org/dyn/closer.lua?path=/nifi/1.15.3/nifi-registry-1.15.3-bin.zip">nifi-registry-1.15.3-bin.zip</a> (
+                                      <a href="https://downloads.apache.org/nifi/1.15.3/nifi-registry-1.15.3-bin.zip.asc">asc</a>,
+                                      <a href="https://downloads.apache.org/nifi/1.15.3/nifi-registry-1.15.3-bin.zip.sha256">sha256</a>,
+                                      <a href="https://downloads.apache.org/nifi/1.15.3/nifi-registry-1.15.3-bin.zip.sha512">sha512</a> )</li>
                               </ul>
                           </li>
-                          <li><a href="https://cwiki.apache.org/confluence/display/NIFI/Release+Notes#ReleaseNotes-Version1.15.2">Release Notes</a></li>
+                          <li><a href="https://cwiki.apache.org/confluence/display/NIFI/Release+Notes#ReleaseNotes-Version1.15.3">Release Notes</a></li>
                       </ul>
                   </li>
               </ul>

Modified: nifi/site/trunk/security.html
URL: http://svn.apache.org/viewvc/nifi/site/trunk/security.html?rev=1897177&r1=1897176&r2=1897177&view=diff
==============================================================================
--- nifi/site/trunk/security.html (original)
+++ nifi/site/trunk/security.html Tue Jan 18 16:42:59 2022
@@ -218,22 +218,6 @@
         <p>Released: December 15, 2021</p>
     </div>
 </div>
-<div class="row" style="background-color: aliceblue">
-    <div class="large-12 columns">
-        <p><a id="CVE-2021-23463" href="#CVE-2021-23463"><strong>CVE-2021-23463</strong></a>: Apache NiFi's use of H2 database</p>
-        <p>Severity: <strong>None</strong></p>
-        <p>Versions Affected:</p>
-        <ul>
-            <li>Apache NiFi 1.13.0 - 1.15.x</li>
-        </ul>
-        </p>
-        <p>Description: For posterity we will note here that Apache NiFi uses H2 database v1.4.199 which was announced to contain CVE-2021-23463. Upon investigation, we have found that NiFi's usage of H2 is
-            limited in scope, generally to authentication mechanisms which have clearly defined usages that do not include usages of the vulnerable org.h2.jdbc.JdbcResultSet.getSQLXML() method. For more information on this H2 vulnerability, see <a href="https://nvd.nist.gov/vuln/detail/CVE-2021-23463" target="_blank">NIST NVD CVE-2021-23463</a>. </p>
-        <p>Mitigation: We are working to develop an upgrade path for NiFi to a fixed version of the H2 dependency, which will resolve flagging this issue on CVE scans.</p>
-        <p>CVE Link: <a href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23463" target="_blank">Mitre Database: CVE-2021-23463</a></p>
-        <p>Released: December 15, 2021</p>
-    </div>
-</div>
 <div class="medium-space"></div>
 <div class="row">
     <div class="large-12 columns features">