Security Advisory

CVE-2022-42130

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-11-15 00:00:00
Last updated 2026-07-09 00:22:02
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The Dynamic Data Mapping module in Liferay Portal 7.1.0 through 7.4.3.4, and Liferay DXP 7.1 before fix pack 27, 7.2 before fix pack 19, 7.3 before update 4, and 7.4 GA does not properly check permission of form entries, which allows remote authenticated users to view and access all form entries.