Liferay

Security Scorecard

Score

42F

Total CVEs

60

Patch Rate

0%

0 patched

Avg Response

-

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical1
High4
Medium55
Low0

Patch Status

Patched0 (0%)
Partial/Workaround2 (3%)
Unpatched58 (97%)

CVEs (60)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-43771Liferay Notifications Widget XSSMEDIUM5.468dUnpatched
CVE-2025-43823Liferay XSS VulnerabilityMEDIUM5.469dUnpatched
CVE-2025-43825Liferay Freemarker Template VulnerabilityMEDIUM6.573dUnpatched
CVE-2025-43827Liferay IDOR VulnerabilityMEDIUM4.376dUnpatched
CVE-2025-43826Liferay Portal XSSMEDIUM5.476dUnpatched
CVE-2025-43806Liferay Portal VulnerabilityMEDIUM4.382dUnpatched
CVE-2025-43810Liferay Commerce Order IDOR ExploitMEDIUM4.382dUnpatched
CVE-2025-43814Liferay Audit Event BypassMEDIUM6.582dUnpatched
CVE-2025-43808Liferay Commerce VulnerabilityMEDIUM5.387dUnpatched
CVE-2025-43803Liferay IDOR VulnerabilityMEDIUM4.388dUnpatched