Missing SSL Certificate Validation in Liferay's Dynamic Data Mapping Module's REST Data Providers

Missing SSL Certificate Validation in Liferay's Dynamic Data Mapping Module's REST Data Providers

CVE-2022-42131 · MEDIUM Severity

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N

Certain Liferay products are affected by: Missing SSL Certificate Validation in the Dynamic Data Mapping module's REST data providers. This affects Liferay Portal 7.1.0 through 7.4.2 and Liferay DXP 7.1 before fix pack 27, 7.2 before fix pack 17, and 7.3 before service pack 3.

Learn more about our Web Application Penetration Testing UK.