-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| com.liferay.portal:release.portal.bom | maven | >= 7.1.0, < 7.4.3.4 | 7.4.3.4 |
The vulnerability centers on missing SSL validation in DDM REST data providers. While exact patch details are unavailable, the advisory specifically identifies DDMRESTDataProvider as the vulnerable component. Typical Java REST client patterns would involve: