CVE-2023-33948

The Dynamic Data Mapping module in Liferay Portal 7.4.3.67, and Liferay DXP 7.4 update 67 does not limit Document and Media files which can be downloaded from a Form, which allows remote attackers to ...

Continue Reading
CVE-2023-33945

SQL injection vulnerability in the upgrade process for SQL Server in Liferay Portal 7.3.1 through 7.4.3.17, and Liferay DXP 7.3 before update 6, and 7.4 before update 18 allows attackers to execute ar ...

Continue Reading
CVE-2022-47152

Cross-Site Request Forgery (CSRF) vulnerability in Etison, LLC ClickFunnels plugin Read More ...

Continue Reading
CVE-2022-46794

Cross-Site Request Forgery (CSRF) vulnerability in weightbasedshipping.Com WooCommerce Weight Based Shipping plugin Read More ...

Continue Reading
CVE-2022-47180

Cross-Site Request Forgery (CSRF) vulnerability in Kopa Theme Kopa Framework plugin Read More ...

Continue Reading
CVE-2022-45364

Cross-Site Request Forgery (CSRF) vulnerability in Glen Don L. Mongaya Drag and Drop Multiple File Upload – Contact Form 7 plugin Read More ...

Continue Reading
CVE-2022-46816

Cross-Site Request Forgery (CSRF) vulnerability in Booking Ultra Pro Appointments Booking Calendar Plugin plugin Read More ...

Continue Reading
CVE-2022-47448

Cross-Site Request Forgery (CSRF) vulnerability in dev.Xiligroup.Com - MS plugin Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: