Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Allocation of Resources Without Limits or Throttling
com.liferay:com.liferay.object.web[,1.0.218)Maven25 Aug 2025
  • M
Allocation of Resources Without Limits or Throttling
com.liferay:com.liferay.object.dynamic.data.mapping.form.field.type[,1.0.64)Maven25 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.dynamic.data.mapping.web[,5.0.122)Maven25 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.dynamic.data.mapping.web[,5.0.122)Maven25 Aug 2025
  • H
Prototype Pollution
org.webjars.npm:content-security-policy-parser[0,]Maven25 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.redirect.service[,2.0.79)Maven24 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.portal.language.lang[,1.0.244)Maven24 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay.portal:com.liferay.portal.kernel[,157.0.0)Maven24 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay.portal:com.liferay.portal.impl[,110.0.0)Maven24 Aug 2025
  • M
Timing Attack
com.liferay:com.liferay.portal.security.password.encryptor.impl[,1.0.14)Maven24 Aug 2025
  • M
Timing Attack
com.liferay.portal:com.liferay.portal.impl[,110.0.0)Maven24 Aug 2025
  • M
Timing Attack
com.liferay.portal:com.liferay.portal.kernel[,157.0.0)Maven24 Aug 2025
  • M
Regular Expression Denial of Service (ReDoS)
org.webjars.bower:angular-sanitize[0,]Maven24 Aug 2025
  • M
Regular Expression Denial of Service (ReDoS)
org.webjars.npm:angular-sanitize[0,]Maven24 Aug 2025
  • L
Out-of-bounds Write
org.bouncycastle:bc-fips-debug[2.1.0,2.1.1)Maven22 Aug 2025
  • L
Out-of-bounds Write
org.bouncycastle:bc-fips[2.1.0,2.1.1)Maven22 Aug 2025
  • H
Allocation of Resources Without Limits or Throttling
org.bouncycastle:bcprov-lts8on[2.73.7,2.73.8)Maven22 Aug 2025
  • H
Allocation of Resources Without Limits or Throttling
org.bouncycastle:bc-fips-debug[2.1.0,2.1.1)Maven22 Aug 2025
  • H
Allocation of Resources Without Limits or Throttling
org.bouncycastle:bc-fips[2.1.0,2.1.1)Maven22 Aug 2025
  • M
Regular Expression Denial of Service (ReDoS)
org.webjars.npm:yarn[0,]Maven22 Aug 2025
  • M
Server-side Request Forgery (SSRF)
org.apache.eventmesh:eventmesh-runtime[1.6.0-release,]Maven21 Aug 2025
  • L
Authentication Bypass Using an Alternate Path or Channel
com.liferay:com.liferay.multi.factor.authentication.web[,2.0.42)Maven21 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.journal.web[0,]Maven21 Aug 2025
  • C
Function Call With Incorrect Argument Type
org.webjars.npm:sha.js[,2.4.12)Maven21 Aug 2025
  • M
Arbitrary File Upload
com.liferay:com.liferay.dynamic.data.mapping.form.web[,4.0.180)Maven21 Aug 2025
  • M
Information Exposure
com.liferay.portal:com.liferay.portal.kernel[,160.0.0)Maven21 Aug 2025
  • M
Information Exposure
com.liferay:com.liferay.calendar.service[,6.0.83)Maven21 Aug 2025
  • M
Information Exposure
com.liferay:com.liferay.calendar.web[,5.0.106)Maven21 Aug 2025
  • M
Information Exposure
com.liferay.portal:com.liferay.portal.impl[,111.0.0)Maven21 Aug 2025
  • C
Function Call With Incorrect Argument Type
org.webjars.npm:cipher-base[,1.0.6)Maven21 Aug 2025