CVE-2025-62258: Liferay Portal Vulnerable to CSRF in Headless APIs
N/A
CVSS Score
Basic Information
CVE ID
GHSA ID
EPSS Score
0.14846%
CWE
Published
10/28/2025
Updated
10/29/2025
KEV Status
No
Technology
Java
Technical Details
CVSS Vector
-
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| com.liferay.portal:release.portal.bom | maven | >= 7.4.0-ga1, < 7.4.3.108 | 7.4.3.108 |