Known vulnerabilities in Liferay Liferay DXP 7.2 fix pack 15

Vendor: Liferay
Website:
Total Security Bulletins: 19

Security bulletins (19)

Secuity bulletin Severity Status Published
SB2025061712: Denial of service in Liferay Portal and DXP Medium
Patched
17.06.2025
SB2024022227: Open redirect in Liferay Portal and Liferay DXP Medium
Patched
22.02.2024
SB2024022224: Information disclosure in Liferay Portal and Liferay DXP Medium
Patched
22.02.2024
SB2024022219: Denial of service in Liferay Portal and Liferay DXP Medium
Patched
22.02.2024
SB2024022217: Open redirect in Liferay Portal and Liferay DXP Medium
Patched
22.02.2024
SB2024022216: Use of a broken or risky cryptographic algorithm in Liferay Portal and Liferay DXP Medium
Patched
22.02.2024
SB2024022215: Information disclosure in Liferay Portal and Liferay DXP Medium
Patched
22.02.2024
SB2024022131: Improper access control in Liferay Portal and Liferay DXP Medium
Patched
21.02.2024
SB2024022130: XML External Entity injection in Liferay Portal and Liferay DXP Low
Patched
21.02.2024
SB2024022129: Stored cross-site scripting in Liferay Portal and Liferay DXP Low
Patched
21.02.2024
SB2024022128: Information disclosure in Liferay Portal and Liferay DXP Medium
Patched
21.02.2024
SB2024022118: Stored cross-site scripting in Liferay Portal and Liferay DXP Low
Patched
21.02.2024
SB2024022117: Stored cross-site scripting in Liferay Portal and Liferay DXP Low
Patched
21.02.2024
SB2024022116: Stored cross-site scripting in Liferay DXP and Liferay Portal Low
Patched
21.02.2024
SB2024022114: Stored cross-site scripting in Liferay Portal and Liferay DXP Low
Patched
21.02.2024
SB2024022110: Stored cross-site scripting in Liferay Portal and Liferay DXP Low
Patched
21.02.2024
SB2024022109: Cross-site scripting in Liferay Portal and Liferay DXP Low
Patched
21.02.2024
SB2024022010: Information disclosure in Liferay Portal and Liferay DXP Low
Patched
20.02.2024
SB2024022006: Privilege escalation in Liferay Portal and Liferay DXP Medium
Patched
20.02.2024