Junglewise Threat Intelligence

CVE-2022-41414: Liferay Portal Insecure Default Configuration in auth.login.prompt.enabled

CVE-2022-41414 · Severity: low · CVSS 3.1 · Published 2022-10-07

Technologies: com.liferay.portal:release.portal.bom (Maven), com.liferay.portal:com.liferay.portal.impl (Maven). Vendors: Maven.

Executive brief

Liferay Portal Insecure Default Configuration in auth.login.prompt.enabled

Affected products

  • Maven com.liferay.portal:release.portal.bom
  • Maven com.liferay.portal:com.liferay.portal.impl

Related threats