The Dynamic Data Mapping module in Liferay Portal 7.4.3.67, and Liferay DXP 7.4 update 67 does not limit Document and Media files which can be downloaded from a Form, which allows remote attackers to ...
Continue ReadingMay 24, 2023
SQL injection vulnerability in the upgrade process for SQL Server in Liferay Portal 7.3.1 through 7.4.3.17, and Liferay DXP 7.3 before update 6, and 7.4 before update 18 allows attackers to execute ar ...
Continue ReadingMay 24, 2023
Cross-Site Request Forgery (CSRF) vulnerability in Etison, LLC ClickFunnels plugin Read More ...
Continue ReadingMay 24, 2023
Cross-Site Request Forgery (CSRF) vulnerability in weightbasedshipping.Com WooCommerce Weight Based Shipping plugin Read More ...
Continue ReadingMay 24, 2023
Cross-Site Request Forgery (CSRF) vulnerability in Kopa Theme Kopa Framework plugin Read More ...
Continue ReadingMay 24, 2023
Cross-Site Request Forgery (CSRF) vulnerability in Glen Don L. Mongaya Drag and Drop Multiple File Upload â Contact Form 7 plugin Read More ...
Continue ReadingMay 24, 2023
Cross-Site Request Forgery (CSRF) vulnerability in Booking Ultra Pro Appointments Booking Calendar Plugin plugin Read More ...
Continue ReadingMay 24, 2023
Cross-Site Request Forgery (CSRF) vulnerability in dev.Xiligroup.Com - MS plugin Read More ...
Continue ReadingMay 24, 2023
Back to Main