Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 6.1
CVE-2017-12646
XSS exists in Liferay Portal before 7.0 CE GA4 via a login name, password, or e-mail address.
Liferay Portal
after 7.0
MEDIUM 6.1
CVE-2017-12647
XSS exists in Liferay Portal before 7.0 CE GA4 via a Knowledge Base article title.
Liferay Portal
after 7.0
MEDIUM 6.1
CVE-2017-12648
XSS exists in Liferay Portal before 7.0 CE GA4 via a bookmark URL.
Liferay Portal
after 7.0
MEDIUM 6.1
CVE-2017-12649
XSS exists in Liferay Portal before 7.0 CE GA4 via a crafted title or summary that is mishandled in the Web Content Display.
Liferay Portal
after 7.0
CRITICAL 9.8
CVE-2016-6517
Directory traversal vulnerability in Liferay 5.1.0 allows remote attackers to have unspecified impact via a %2E%2E (encoded dot dot) in the minifierB…
Liferay
No fix yet
HIGH 8.8
CVE-2010-5327
Liferay Portal through 6.2.10 allows remote authenticated users to execute arbitrary shell commands via a crafted Velocity template.
Liferay Portal
after 6.2.10
MEDIUM 6.1
CVE-2016-3670
Cross-site scripting (XSS) vulnerability in users.jsp in the Profile Search functionality in Liferay before 7.0.0 CE RC1 allows remote attackers to i…
Liferay Portal
after 6.2
MEDIUM 6.8
CVE-2011-1571EPSS 8%
Unspecified vulnerability in the XSL Content portlet in Liferay Portal Community Edition (CE) 5.x and 6.x before 6.0.6 GA, when Apache Tomcat is used…
Liferay Portal
after 6.0.5