foobar7
33 kredili kayıt · son 12 ayda 20 · 0 tanesi CISA KEV’de
Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.
Kredili kayıtlar
Araştırmacılar| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
19İzleyin | CVE-2025-62265İstismar yok | Cross-site scripting (XSS) vulnerability in the Blogs widget in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported versions, and liferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 30 Eki 2025 |
21İzleyin | CVE-2025-62252İstismar yok | Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported versions, and Liferayliferay · digital experience platform · CWE-639 | Orta5,3 | — | %0,3 | 13 Eki 2025 |
19İzleyin | CVE-2025-62246İstismar yok | Multiple stored cross-site scripting (XSS) vulnerabilities in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported versions, and Liliferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 13 Eki 2025 |
21İzleyin | CVE-2025-62242İstismar yok | Insecure Direct Object Reference (IDOR) vulnerability with account addresses in Liferay Portal 7.4.3.4 through 7.4.3.111, and Liferay DXP 20liferay · digital experience platform · CWE-639 | Orta5,3 | — | %0,3 | 13 Eki 2025 |
21İzleyin | CVE-2025-62241İstismar yok | Insecure Direct Object Reference (IDOR) vulnerability with shipment addresses in Liferay DXP 2023.Q4.1 through 2023.Q4.5 allows remote autheliferay · digital experience platform · CWE-639 | Orta5,3 | — | %0,3 | 13 Eki 2025 |
21İzleyin | CVE-2025-62243İstismar yok | Insecure direct object reference (IDOR) vulnerability in Publications in Liferay Portal 7.4.1 through 7.4.3.112, and Liferay DXP 2023.Q4.0 tliferay · digital experience platform · CWE-863 | Orta5,3 | — | %0,2 | 13 Eki 2025 |
19İzleyin | CVE-2025-62244İstismar yok | Insecure direct object reference (IDOR) vulnerability in Publications in Liferay Portal 7.3.1 through 7.4.3.111, and Liferay DXP 2023.Q4.0 tliferay · digital experience platform · CWE-639 | Orta4,8 | — | %0,3 | 13 Eki 2025 |
20İzleyin | CVE-2025-62245İstismar yok | Cross-site request forgery (CSRF) vulnerability in Liferay Portal 7.4.1 through 7.4.3.112, and Liferay DXP 2023.Q4.0 through 2023.Q4.5, 2023liferay · digital experience platform · CWE-352 | Orta5,1 | — | %0,2 | 10 Eki 2025 |
18İzleyin | CVE-2025-62239İstismar yok | Cross-site scripting (XSS) vulnerability in workflow process builder in Liferay Portal 7.4.3.21 through 7.4.3.111, and Liferay DXP 2023.Q4.0liferay · digital experience platform · CWE-79 | Orta4,6 | — | %0,2 | 10 Eki 2025 |
19İzleyin | CVE-2025-62238İstismar yok | Stored cross-site scripting (XSS) vulnerability on the Membership page in Account Settings in Liferay Portal 7.4.3.21 through 7.4.3.111, andliferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 10 Eki 2025 |
19İzleyin | CVE-2025-62237İstismar yok | Stored cross-site scripting (XSS) vulnerability in Commerce’s view order page in Liferay Portal 7.4.3.8 through 7.4.3.111, and Liferay DXP 2liferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 10 Eki 2025 |
19İzleyin | CVE-2025-62240İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities with Calendar events in Liferay Portal 7.4.3.35 through 7.4.3.111, and Liferay DXP 2023.liferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 9 Eki 2025 |
19İzleyin | CVE-2025-43771İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in the Notifications widget in Liferay Portal 7.4.3.102 through 7.4.3.111, and Liferay Dliferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 8 Eki 2025 |
20İzleyin | CVE-2025-43830İstismar yok | Stored cross-site scripting (XSS) vulnerability in Forms in Liferay Portal 7.3.2 through 7.4.3.111, and Liferay DXP 2023.Q4.0 through 2023.Qliferay · digital experience platform · CWE-79 | Orta5,1 | — | %0,2 | 8 Eki 2025 |
19İzleyin | CVE-2025-43829İstismar yok | Stored cross-site scripting (XSS) vulnerability in diagram type products in Commerce in Liferay Portal 7.4.3.18 through 7.4.3.111, and Liferliferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 8 Eki 2025 |
19İzleyin | CVE-2025-43821İstismar yok | Cross-site scripting (XSS) vulnerability in the Commerce Product Comparison Table widget in Liferay Portal 7.4.0 through 7.4.3.111, and Lifeliferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 8 Eki 2025 |
19İzleyin | CVE-2025-43822İstismar yok | Multiple stored cross-site scripting (XSS) vulnerabilities in Liferay Portal 7.4.3.15 through 7.4.3.111, and Liferay DXP 2023.Q4.0 through 2liferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 7 Eki 2025 |
19İzleyin | CVE-2025-43823İstismar yok | Cross-site scripting (XSS) vulnerability in the Commerce Search Result widget in Liferay Portal 7.4.0 through 7.4.3.111, and Liferay DXP 202liferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 7 Eki 2025 |
19İzleyin | CVE-2025-43824İstismar yok | The Profile widget in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported versions, and Liferay DXP 2023.Q4.0 through 2023.Q4.5, 2liferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 6 Eki 2025 |
21İzleyin | CVE-2025-43827İstismar yok | Insecure Direct Object Reference (IDOR) vulnerability with audit events in Liferay Portal 7.4.0 through 7.4.3.117, and older unsupported verliferay · digital experience platform · CWE-639 | Orta5,3 | — | %0,3 | 30 Eyl 2025 |
19İzleyin | CVE-2025-43820İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in the Calendar widget when inviting users to a event in Liferay Portal 7.4.3.35 throughliferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 29 Eyl 2025 |
19İzleyin | CVE-2025-43818İstismar yok | Cross-site scripting (XSS) vulnerability in the Calendar widget in Liferay Portal 7.4.3.35 through 7.4.3.110, and Liferay DXP 2023.Q4.0 throliferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 29 Eyl 2025 |
19İzleyin | CVE-2025-43811İstismar yok | Multiple stored cross-site scripting (XSS) vulnerability in the related asset selector in Liferay Portal 7.4.3.50 through 7.4.3.111, and Lifliferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 29 Eyl 2025 |
21İzleyin | CVE-2025-43810İstismar yok | Insecure Direct Object Reference (IDOR) vulnerability with commerce order notes in Liferay Portal 7.3.5 through 7.4.3.112, and Liferay DXP 2liferay · digital experience platform · CWE-639 | Orta5,3 | — | %0,3 | 22 Eyl 2025 |
19İzleyin | CVE-2025-43807İstismar yok | Stored cross-site scripting (XSS) vulnerability in the notifications widget in Liferay Portal 7.4.0 through 7.4.3.112, and Liferay DXP 2023.liferay · digital experience platform · CWE-79 | Orta4,8 | — | %0,2 | 22 Eyl 2025 |
- CVE-2025-6226519İzleyin
Cross-site scripting (XSS) vulnerability in the Blogs widget in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported versions, and
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform30 Eki 2025
- CVE-2025-6225221İzleyin
Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported versions, and Liferay
OrtaCVSS 5,3İstismar yokEPSS %0liferay · digital experience platform13 Eki 2025
- CVE-2025-6224619İzleyin
Multiple stored cross-site scripting (XSS) vulnerabilities in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported versions, and Li
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform13 Eki 2025
- CVE-2025-6224221İzleyin
Insecure Direct Object Reference (IDOR) vulnerability with account addresses in Liferay Portal 7.4.3.4 through 7.4.3.111, and Liferay DXP 20
OrtaCVSS 5,3İstismar yokEPSS %0liferay · digital experience platform13 Eki 2025
- CVE-2025-6224121İzleyin
Insecure Direct Object Reference (IDOR) vulnerability with shipment addresses in Liferay DXP 2023.Q4.1 through 2023.Q4.5 allows remote authe
OrtaCVSS 5,3İstismar yokEPSS %0liferay · digital experience platform13 Eki 2025
- CVE-2025-6224321İzleyin
Insecure direct object reference (IDOR) vulnerability in Publications in Liferay Portal 7.4.1 through 7.4.3.112, and Liferay DXP 2023.Q4.0 t
OrtaCVSS 5,3İstismar yokEPSS %0liferay · digital experience platform13 Eki 2025
- CVE-2025-6224419İzleyin
Insecure direct object reference (IDOR) vulnerability in Publications in Liferay Portal 7.3.1 through 7.4.3.111, and Liferay DXP 2023.Q4.0 t
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform13 Eki 2025
- CVE-2025-6224520İzleyin
Cross-site request forgery (CSRF) vulnerability in Liferay Portal 7.4.1 through 7.4.3.112, and Liferay DXP 2023.Q4.0 through 2023.Q4.5, 2023
OrtaCVSS 5,1İstismar yokEPSS %0liferay · digital experience platform10 Eki 2025
- CVE-2025-6223918İzleyin
Cross-site scripting (XSS) vulnerability in workflow process builder in Liferay Portal 7.4.3.21 through 7.4.3.111, and Liferay DXP 2023.Q4.0
OrtaCVSS 4,6İstismar yokEPSS %0liferay · digital experience platform10 Eki 2025
- CVE-2025-6223819İzleyin
Stored cross-site scripting (XSS) vulnerability on the Membership page in Account Settings in Liferay Portal 7.4.3.21 through 7.4.3.111, and
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform10 Eki 2025
- CVE-2025-6223719İzleyin
Stored cross-site scripting (XSS) vulnerability in Commerce’s view order page in Liferay Portal 7.4.3.8 through 7.4.3.111, and Liferay DXP 2
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform10 Eki 2025
- CVE-2025-6224019İzleyin
Multiple cross-site scripting (XSS) vulnerabilities with Calendar events in Liferay Portal 7.4.3.35 through 7.4.3.111, and Liferay DXP 2023.
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform9 Eki 2025
- CVE-2025-4377119İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in the Notifications widget in Liferay Portal 7.4.3.102 through 7.4.3.111, and Liferay D
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform8 Eki 2025
- CVE-2025-4383020İzleyin
Stored cross-site scripting (XSS) vulnerability in Forms in Liferay Portal 7.3.2 through 7.4.3.111, and Liferay DXP 2023.Q4.0 through 2023.Q
OrtaCVSS 5,1İstismar yokEPSS %0liferay · digital experience platform8 Eki 2025
- CVE-2025-4382919İzleyin
Stored cross-site scripting (XSS) vulnerability in diagram type products in Commerce in Liferay Portal 7.4.3.18 through 7.4.3.111, and Lifer
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform8 Eki 2025
- CVE-2025-4382119İzleyin
Cross-site scripting (XSS) vulnerability in the Commerce Product Comparison Table widget in Liferay Portal 7.4.0 through 7.4.3.111, and Life
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform8 Eki 2025
- CVE-2025-4382219İzleyin
Multiple stored cross-site scripting (XSS) vulnerabilities in Liferay Portal 7.4.3.15 through 7.4.3.111, and Liferay DXP 2023.Q4.0 through 2
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform7 Eki 2025
- CVE-2025-4382319İzleyin
Cross-site scripting (XSS) vulnerability in the Commerce Search Result widget in Liferay Portal 7.4.0 through 7.4.3.111, and Liferay DXP 202
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform7 Eki 2025
- CVE-2025-4382419İzleyin
The Profile widget in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported versions, and Liferay DXP 2023.Q4.0 through 2023.Q4.5, 2
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform6 Eki 2025
- CVE-2025-4382721İzleyin
Insecure Direct Object Reference (IDOR) vulnerability with audit events in Liferay Portal 7.4.0 through 7.4.3.117, and older unsupported ver
OrtaCVSS 5,3İstismar yokEPSS %0liferay · digital experience platform30 Eyl 2025
- CVE-2025-4382019İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in the Calendar widget when inviting users to a event in Liferay Portal 7.4.3.35 through
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform29 Eyl 2025
- CVE-2025-4381819İzleyin
Cross-site scripting (XSS) vulnerability in the Calendar widget in Liferay Portal 7.4.3.35 through 7.4.3.110, and Liferay DXP 2023.Q4.0 thro
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform29 Eyl 2025
- CVE-2025-4381119İzleyin
Multiple stored cross-site scripting (XSS) vulnerability in the related asset selector in Liferay Portal 7.4.3.50 through 7.4.3.111, and Lif
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform29 Eyl 2025
- CVE-2025-4381021İzleyin
Insecure Direct Object Reference (IDOR) vulnerability with commerce order notes in Liferay Portal 7.3.5 through 7.4.3.112, and Liferay DXP 2
OrtaCVSS 5,3İstismar yokEPSS %0liferay · digital experience platform22 Eyl 2025
- CVE-2025-4380719İzleyin
Stored cross-site scripting (XSS) vulnerability in the notifications widget in Liferay Portal 7.4.0 through 7.4.3.112, and Liferay DXP 2023.
OrtaCVSS 4,8İstismar yokEPSS %0liferay · digital experience platform22 Eyl 2025