Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
Maven/com.liferay.portal:com.liferay.portal.kernel — 6 CVEs · VulnScope
pkg:Maven/
com.liferay.portal:com.liferay.portal.kernel
6 total CVEs
CRITICAL
1
HIGH
1
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.8
CVE-2020-7961
⚠ KEV
Deserialization of Untrusted Data in Liferay Portal
from 0, < 4.35.3
HIGH
8.1
CVE-2024-25607
Liferay Portal defaults to a low work factor for the default password hashing algorithm
from 0, < 38.0.0
—
CVE-2025-43792
Liferay Portal has External Control of System or Configuration Settings
from 0, < 130.0.1
—
Liferay Portal has Improper Validation of Specified Quantity in Input
from 0, < 130.0.1
—
Liferay Portal vulnerable to Reflected XSS with the referer and forward parameter
from 0, < 155.0.0
—
Liferay Portal SessionClicks does not restrict the saving of request parameters in the HTTP session
from 0, < 38.0.0
CVE-2025-43793
CVE-2025-43770
CVE-2025-3526