Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Liferay — Vulnerabilities & Security Advisories 210

Browse all 210 CVE security advisories affecting Liferay. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Liferay is an enterprise open-source platform primarily utilized for building digital experiences, including websites, portals, and intranets. Its extensive feature set and Java-based architecture have historically attracted significant security scrutiny, resulting in over 210 recorded Common Vulnerabilities and Exposures. The most prevalent vulnerability classes involve remote code execution, cross-site scripting, and privilege escalation, often stemming from insecure deserialization flaws or improper access controls within its portal components. Notable incidents include critical RCE vulnerabilities that allowed unauthenticated attackers to execute arbitrary commands on affected servers, highlighting risks associated with default configurations and legacy code paths. While the platform offers robust enterprise-grade features, its complexity necessitates rigorous patch management and secure configuration practices to mitigate the high volume of identified security defects.

Top products by Liferay: Portal DXP
CVE IDTitleCVSSSeverityPublished
CVE-2024-26271 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-352 8.8 High2024-10-22
CVE-2023-47795 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 9.0 Critical2024-02-21
CVE-2024-25151 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 5.4 Medium2024-02-21
CVE-2023-40191 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 9.0 Critical2024-02-21
CVE-2023-42498 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 9.6 Critical2024-02-21
CVE-2024-26269 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 9.6 Critical2024-02-21
CVE-2024-26266 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 9.0 Critical2024-02-21
CVE-2023-42496 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 9.6 Critical2024-02-21
CVE-2024-25603 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 9.0 Critical2024-02-21
CVE-2024-25152 Liferay Portal 和 Liferay DXP 安全漏洞 — PortalCWE-79 9.0 Critical2024-02-21
CVE-2024-25601 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 9.0 Critical2024-02-21
CVE-2024-25602 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 9.0 Critical2024-02-21
CVE-2024-25147 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-79 9.6 Critical2024-02-21
CVE-2024-26270 Liferay Portal 和 Liferay DXP 安全漏洞 — PortalCWE-201 6.5 Medium2024-02-20
CVE-2024-26268 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-203 5.3 Medium2024-02-20
CVE-2024-26267 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-1188 5.3 Medium2024-02-20
CVE-2024-26265 Liferay Portal 和 Liferay DXP 安全漏洞 — PortalCWE-770 5.0 Medium2024-02-20
CVE-2024-25610 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-1188 9.0 Critical2024-02-20
CVE-2024-25609 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-601 6.1 Medium2024-02-20
CVE-2024-25608 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-601 6.1 Medium2024-02-20
CVE-2024-25607 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-916 8.1 High2024-02-20
CVE-2024-25606 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-611 8.0 High2024-02-20
CVE-2024-25605 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-276 5.3 Medium2024-02-20
CVE-2024-25604 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-863 6.5 Medium2024-02-20
CVE-2024-25150 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-201 4.3 Medium2024-02-20
CVE-2024-25149 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-863 5.4 Medium2024-02-20
CVE-2023-44308 Liferay DXP 安全漏洞 — DXPCWE-601 6.1 Medium2024-02-20
CVE-2023-5190 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-601 6.1 Medium2024-02-20
CVE-2024-25148 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-201 5.4 Medium2024-02-08
CVE-2024-25146 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-204 5.3 Medium2024-02-08

This page lists every published CVE security advisory associated with Liferay. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.