Liferay

Security Scorecard

Score

42F

Total CVEs

60

Patch Rate

0%

0 patched

Avg Response

-

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical1
High4
Medium55
Low0

Patch Status

Patched0 (0%)
Partial/Workaround2 (3%)
Unpatched58 (97%)

CVEs (60)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-43801Liferay XML-RPC Denial-of-ServiceHIGH7.5-Unknown
CVE-2025-43800Liferay XSS VulnerabilityMEDIUM6.192dUnpatched
CVE-2025-43798Liferay DXP Security VulnerabilityMEDIUM6.592dUnpatched
CVE-2025-43797Liferay Portal Site Membership BypassMEDIUM5.492dUnpatched
CVE-2025-43788Liferay Portal Organization Selector BypassMEDIUM4.395dUnpatched
CVE-2025-43796Liferay GraphQL Denial-of-Service (DoS)HIGH7.595dUnpatched
CVE-2025-43782Liferay IDOR VulnerabilityMEDIUM4.396dUnpatched
CVE-2025-43763Liferay Portal SSRF VulnerabilityMEDIUM6.5-Unknown
CVE-2025-43778Liferay Portal Cross-Site Scripting VulnerabilityMEDIUM6.1-Unknown
CVE-2025-43775Liferay Portal XSSMEDIUM5.498dUnpatched