Vulnerability Name CVE Severity
Liferay Portal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-44309) CVE-2023-44309
Liferay Portal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-44310) CVE-2023-44310
Liferay Portal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-44311) CVE-2023-44311
Liferay Portal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-47797) CVE-2023-47797
Liferay Portal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-25145) CVE-2024-25145
Liferay Portal Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-29053) CVE-2021-29053
Liferay Portal Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-42120) CVE-2022-42120
Liferay Portal Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-42121) CVE-2022-42121
Liferay Portal Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-42122) CVE-2022-42122
Liferay Portal Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2023-33945) CVE-2023-33945
Liferay Portal Incorrect Authorization Vulnerability (CVE-2021-33335) CVE-2021-33335
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2021-29052) CVE-2021-29052
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2021-33324) CVE-2021-33324
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2021-33327) CVE-2021-33327
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2021-33333) CVE-2021-33333
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2021-33334) CVE-2021-33334
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2021-38268) CVE-2021-38268
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2022-26595) CVE-2022-26595
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2022-41414) CVE-2022-41414
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2022-42127) CVE-2022-42127
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2022-42128) CVE-2022-42128
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2022-42130) CVE-2022-42130
Liferay Portal Inefficient Regular Expression Complexity Vulnerability (CVE-2022-42124) CVE-2022-42124
Liferay Portal Inefficient Regular Expression Complexity Vulnerability (CVE-2023-33950) CVE-2023-33950
Liferay Portal Insecure Default Initialization of Resource Vulnerability (CVE-2023-33949) CVE-2023-33949
Liferay Portal Insufficiently Protected Credentials Vulnerability (CVE-2021-29043) CVE-2021-29043
Liferay Portal Insufficient Session Expiration Vulnerability (CVE-2021-33322) CVE-2021-33322
Liferay Portal Missing Authorization Vulnerability (CVE-2022-38512) CVE-2022-38512
Liferay Portal Missing Authorization Vulnerability (CVE-2022-39975) CVE-2022-39975
Liferay Portal Missing Authorization Vulnerability (CVE-2023-3426) CVE-2023-3426
Liferay Portal Missing Authorization Vulnerability (CVE-2023-33948) CVE-2023-33948
Liferay Portal Observable Discrepancy Vulnerability (CVE-2024-25146) CVE-2024-25146
Liferay Portal Origin Validation Error Vulnerability (CVE-2022-25146) CVE-2022-25146
Liferay Portal Other Vulnerability (CVE-2023-33946) CVE-2023-33946
Liferay Portal Other Vulnerability (CVE-2023-33947) CVE-2023-33947
Liferay Portal Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-5327) CVE-2010-5327
Liferay Portal Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-10795) CVE-2018-10795
Liferay Portal Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-15839) CVE-2020-15839
Liferay Portal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2020-24554) CVE-2020-24554
Liferay Portal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2021-33331) CVE-2021-33331
Liferay Portal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2022-28977) CVE-2022-28977
Liferay Portal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2023-35029) CVE-2023-35029
Liferay Portal Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2021-33321) CVE-2021-33321
Liferay TunnelServlet Deserialization Remote Code Execution
Liferay version older than 7.0
Liferay version older than 7.1
Liferay XMLRPC Blind SSRF
lightbox2 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-9441) CVE-2014-9441
Lighttpd Cryptographic Issues Vulnerability (CVE-2013-1427) CVE-2013-1427
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-1111) CVE-2008-1111
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-1270) CVE-2008-1270
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-4359) CVE-2008-4359
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-4360) CVE-2008-4360
Lighttpd Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-2324) CVE-2014-2324
Lighttpd Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-19052) CVE-2018-19052
Lighttpd Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2015-3200) CVE-2015-3200
Lighttpd Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-2323) CVE-2014-2323
Lighttpd Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2007-4727) CVE-2007-4727
Lighttpd Inadequate Encryption Strength Vulnerability (CVE-2013-4508) CVE-2013-4508
Lighttpd Integer Overflow or Wraparound Vulnerability (CVE-2019-11072) CVE-2019-11072
Lighttpd Missing Release of Memory after Effective Lifetime Vulnerability (CVE-2022-41556) CVE-2022-41556
Lighttpd NULL Pointer Dereference Vulnerability (CVE-2022-37797) CVE-2022-37797
Lighttpd Other Vulnerability (CVE-2005-0453) CVE-2005-0453
Lighttpd Other Vulnerability (CVE-2006-0760) CVE-2006-0760
Lighttpd Other Vulnerability (CVE-2006-0814) CVE-2006-0814
Lighttpd Other Vulnerability (CVE-2007-1869) CVE-2007-1869
Lighttpd Other Vulnerability (CVE-2007-1870) CVE-2007-1870
Lighttpd Other Vulnerability (CVE-2007-3946) CVE-2007-3946
Lighttpd Other Vulnerability (CVE-2007-3947) CVE-2007-3947
Lighttpd Other Vulnerability (CVE-2007-3948) CVE-2007-3948
Lighttpd Other Vulnerability (CVE-2007-3949) CVE-2007-3949
Lighttpd Other Vulnerability (CVE-2007-3950) CVE-2007-3950
Lighttpd Other Vulnerability (CVE-2008-1531) CVE-2008-1531
Lighttpd Other Vulnerability (CVE-2011-4362) CVE-2011-4362
Lighttpd Out-of-bounds Write Vulnerability (CVE-2022-22707) CVE-2022-22707