Miggo Logo

CVE-2025-62260: Liferay Portal Vulnerable to DoS via Crafted Headless API Request

N/A

CVSS Score

Basic Information

EPSS Score
0.35668%
Published
10/28/2025
Updated
10/29/2025
KEV Status
No
Technology
TechnologyJava

Technical Details

CVSS Vector
-
Package NameEcosystemVulnerable VersionsFirst Patched Version
com.liferay.portal:release.portal.bommaven>= 7.4.0-ga1, < 7.4.3.1007.4.3.100

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

Li**r*y Port*l *.*.* t*rou** *.*.*.**, *n* Li**r*y *XP ****.Q*.* t*rou** ****.Q*.*, *.* ** t*rou** up**t* **, *.* ** t*rou** up**t* **, *n* ol**r unsupport** v*rsions *o*s not limit t** num**r o* o*j**ts r*turn** *rom ****l*ss *PI r*qu*sts, w*i** *ll

Reasoning

No *n*lysis *v*il**l*