Loading HuntDB...

GHSA-qwj8-qgpr-8crm

GitHub Security Advisory

Liferay Portal vulnerable to user impersonation

✓ GitHub Reviewed HIGH Has CVE

Advisory Details

In Liferay Portal 7.2.0 through 7.4.1, and older unsupported versions, and Liferay DXP 7.3 before service pack 3, 7.2 before fix pack 15, and older unsupported versions the `doAsUserId` URL parameter may get leaked when creating linked content using the WYSIWYG editor and while impersonating a user. This may allow remote authenticated users to impersonate a user after accessing the linked content.

Affected Packages

Maven com.liferay.portal:release.portal.bom
Affected versions: 7.2.0 (fixed in 7.4.2)
Maven com.liferay.portal:release.dxp.bom
Affected versions: 7.2.0 (fixed in 7.2.10.fp15)
Maven com.liferay.portal:release.dxp.bom
Affected versions: 7.3.0 (fixed in 7.3.10.u4)

Related CVEs

Key Information

GHSA ID
GHSA-qwj8-qgpr-8crm
Published
February 8, 2024 6:30 AM
Last Modified
October 2, 2024 6:39 PM
CVSS Score
7.5 /10
Primary Ecosystem
Maven
Primary Package
com.liferay.portal:release.portal.bom
GitHub Reviewed
✓ Yes

Dataset

Last updated: June 18, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.