GHSA-v6xr-v2qg-h22h
MODERATECVE-2025-43732Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.10, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.1 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.17 and 7.4 GA through update 92 is vulnerable to Insecure Direct Object Reference (IDOR) in the groupId parameter of the comliferayrolesselectorwebportletRolesSelectorPortletgroupId. When an organiza
- Affected
- < 5.0.32
- Fixed in
- 5.0.32
- Weakness
- CWE-639
- Published
- 2025-08-18
- Source
- github