Vulnerability Monitor

The vendors, products, and vulnerabilities you care about
digital_experience_platform Vendor: liferay

About This Product

digital_experience_platform is a software product offered by liferay. This product serves as critical infrastructure in many organizational deployments, making vulnerability monitoring essential for organizations relying on it. Security vulnerabilities in products of this category can affect system availability, data confidentiality, and integrity across entire networks. The significant number of reported vulnerabilities indicates this product has received substantial security scrutiny and community focus over time. Regular assessment of known vulnerabilities and timely patching are fundamental components of responsible system administration for any deployment of this software.

Vulnerability Landscape Summary

SecUtils has identified 264 known vulnerabilities affecting liferay digital_experience_platform. This includes 25 critical-severity issues and 29 high-severity issues that warrant immediate attention. Vulnerabilities in this product have been disclosed spanning from 2020 to 2025, indicating a recent active security attention. 206 medium-severity issues and 4 low-severity issues complete the vulnerability landscape. Organizations should prioritize patching based on deployment context, asset criticality, and exploitation likelihood rather than severity alone.

Known Vulnerabilities
ID Date Published Last Modified Severity (CVSSv3) Severity (CVSSv2) Exploit Available
CVE-2020-15841 2020-07-20 2025-08-15 8.3 4.3 Likely
CVE-2020-15842 2020-07-20 2025-05-13 8.1 6.8 Likely
CVE-2020-15839 2020-09-22 2024-11-21 6.5 4.0 Likely
CVE-2020-15840 2020-09-24 2025-05-13 5.3 5.0 Likely
CVE-2021-29040 2021-05-16 2025-05-13 5.3 5.0 Likely
CVE-2021-29043 2021-05-17 2025-05-13 5.9 4.3 Likely
CVE-2021-29044 2021-05-17 2025-05-13 6.1 4.3 Likely
CVE-2021-29048 2021-05-17 2025-05-13 6.1 4.3 Likely
CVE-2021-29051 2021-05-17 2025-05-13 6.1 4.3 Likely
CVE-2021-29049 2021-06-09 2025-05-13 6.1 4.3 Likely
CVE-2021-33320 2021-08-03 2025-05-13 4.3 4.0 Likely
CVE-2021-33322 2021-08-03 2025-05-13 7.5 5.0 Likely
CVE-2021-33323 2021-08-03 2025-05-13 7.5 5.0 Likely
CVE-2021-33324 2021-08-03 2025-05-13 4.3 4.0 Likely
CVE-2021-33325 2021-08-03 2025-05-13 4.9 4.0 Likely
CVE-2021-33326 2021-08-03 2025-05-13 6.1 4.3 Likely
CVE-2021-33327 2021-08-03 2025-05-13 4.3 4.0 Likely
CVE-2021-33328 2021-08-03 2025-05-13 5.4 3.5 Unknown
CVE-2021-33330 2021-08-03 2025-05-13 4.3 4.3 Likely
CVE-2021-33331 2021-08-03 2025-05-13 6.1 5.8 Likely
CVE-2021-33332 2021-08-03 2025-05-13 6.1 4.3 Likely
CVE-2021-33333 2021-08-03 2025-05-13 6.3 6.5 Likely
CVE-2021-33334 2021-08-03 2025-05-13 4.3 4.0 Likely
CVE-2021-33335 2021-08-03 2025-05-13 7.2 6.5 Likely
CVE-2021-33336 2021-08-04 2025-05-13 5.4 3.5 Unknown
CVE-2021-33339 2021-08-04 2025-05-13 4.8 3.5 Unknown
CVE-2021-33337 2021-08-04 2025-05-13 6.1 4.3 Likely
CVE-2021-33338 2021-08-04 2025-05-13 7.5 5.1 Unknown
CVE-2021-38268 2022-03-02 2024-11-21 6.5 4.0 Likely
CVE-2021-38266 2022-03-02 2024-11-21 7.5 5.0 Likely
CVE-2021-38263 2022-03-03 2024-11-21 6.1 4.3 Likely
CVE-2021-38265 2022-03-03 2024-11-21 5.4 3.5 Unknown
CVE-2021-38267 2022-03-03 2024-11-21 5.4 3.5 Unknown
CVE-2021-38269 2022-03-03 2024-11-21 5.4 3.5 Unknown
CVE-2022-25146 2022-03-03 2024-11-21 5.3 5.0 Likely
CVE-2022-26593 2022-04-19 2024-11-21 5.4 3.5 Unknown
CVE-2022-26595 2022-04-19 2024-11-21 4.3 4.0 Likely
CVE-2022-26596 2022-04-25 2024-11-21 6.1 4.3 Likely
CVE-2022-26597 2022-04-25 2024-11-21 6.1 4.3 Likely
CVE-2022-28978 2022-09-22 2025-05-27 5.4 - -
CVE-2022-28979 2022-09-22 2025-05-27 6.1 - -
CVE-2022-28977 2022-09-22 2025-05-27 6.1 - -
CVE-2022-42112 2022-10-18 2025-05-13 5.4 - -
CVE-2022-42110 2022-11-15 2025-05-13 6.1 - -
CVE-2022-42111 2022-11-15 2025-05-13 5.4 - -
CVE-2022-42118 2022-11-15 2025-05-13 6.1 - -
CVE-2022-42121 2022-11-15 2025-09-05 8.8 - -
CVE-2022-42123 2022-11-15 2025-09-05 7.5 - -
CVE-2022-42124 2022-11-15 2025-09-05 7.5 - -
CVE-2022-42125 2022-11-15 2025-04-30 7.5 - -
CVE-2022-42126 2022-11-15 2025-04-30 4.3 - -
CVE-2022-42127 2022-11-15 2025-04-30 5.3 - -
CVE-2022-42128 2022-11-15 2025-04-30 5.3 - -
CVE-2022-42129 2022-11-15 2025-04-30 4.3 - -
CVE-2022-42130 2022-11-15 2025-04-30 4.3 - -
CVE-2022-42131 2022-11-15 2025-04-30 4.8 - -
CVE-2022-42132 2022-11-15 2025-04-30 5.9 - -
CVE-2023-33937 2023-05-24 2026-01-09 5.4 - -
CVE-2023-33938 2023-05-24 2026-01-09 4.8 - -
CVE-2023-33939 2023-05-24 2026-01-30 5.4 - -
CVE-2023-33940 2023-05-24 2026-01-30 4.8 - -
CVE-2023-33941 2023-05-24 2026-01-13 6.1 - -
CVE-2023-33942 2023-05-24 2026-01-13 5.4 - -
CVE-2023-33943 2023-05-24 2026-01-30 5.4 - -
CVE-2023-33944 2023-05-24 2026-01-30 4.8 - -
CVE-2023-33945 2023-05-24 2026-01-13 6.4 - -
CVE-2023-33946 2023-05-24 2026-01-13 2.7 - -
CVE-2023-33947 2023-05-24 2026-01-13 2.7 - -
CVE-2023-33948 2023-05-24 2026-01-13 5.3 - -
CVE-2023-33949 2023-05-24 2026-01-09 5.3 - -
CVE-2023-33950 2023-05-24 2024-11-21 6.5 - -
CVE-2023-3193 2023-06-15 2026-01-09 6.1 - -
CVE-2023-3426 2023-08-02 2026-01-30 4.3 - -
CVE-2023-42497 2023-10-17 2024-11-21 9.6 - -
CVE-2023-42629 2023-10-17 2024-11-21 9.0 - -
CVE-2023-44309 2023-10-17 2024-11-21 9.0 - -
CVE-2023-44310 2023-10-17 2024-11-21 9.0 - -
CVE-2023-44311 2023-10-17 2024-11-21 9.6 - -
CVE-2023-42628 2023-10-17 2024-11-21 9.0 - -
CVE-2023-42627 2023-10-17 2024-11-21 9.6 - -
CVE-2024-25143 2024-02-07 2024-11-21 6.5 - -
CVE-2024-25145 2024-02-07 2025-05-13 9.6 - -
CVE-2023-47798 2024-02-08 2024-11-21 5.4 - -
CVE-2024-25144 2024-02-08 2025-05-13 4.1 - -
CVE-2024-25146 2024-02-08 2025-05-13 5.3 - -
CVE-2024-25148 2024-02-08 2025-05-13 5.4 - -
CVE-2022-45320 2024-02-20 2025-03-28 6.3 - -
CVE-2023-5190 2024-02-20 2025-01-28 6.1 - -
CVE-2023-44308 2024-02-20 2025-01-28 6.1 - -
CVE-2024-25149 2024-02-20 2024-12-10 5.4 - -
CVE-2024-25150 2024-02-20 2024-12-10 4.3 - -
CVE-2024-25604 2024-02-20 2024-12-10 6.5 - -
CVE-2024-25605 2024-02-20 2024-12-10 5.3 - -
CVE-2024-25606 2024-02-20 2024-12-11 8.0 - -
CVE-2024-25607 2024-02-20 2024-12-11 8.1 - -
CVE-2024-25608 2024-02-20 2024-12-11 6.1 - -
CVE-2024-25609 2024-02-20 2024-12-11 6.1 - -
CVE-2024-25610 2024-02-20 2024-12-11 9.0 - -
CVE-2024-26265 2024-02-20 2025-01-28 5.0 - -
CVE-2024-26267 2024-02-20 2025-01-28 5.3 - -
CVE-2024-26268 2024-02-20 2025-01-28 5.3 - -
CVE-2024-26270 2024-02-20 2025-01-28 6.5 - -
CVE-2021-29038 2024-02-20 2025-05-13 6.3 - -
CVE-2024-25147 2024-02-21 2025-01-28 9.6 - -
CVE-2024-25152 2024-02-21 2025-01-28 9.0 - -
CVE-2024-25601 2024-02-21 2025-01-28 9.0 - -
CVE-2024-25602 2024-02-21 2025-01-28 9.0 - -
CVE-2023-40191 2024-02-21 2025-01-28 9.0 - -
CVE-2023-42496 2024-02-21 2025-01-28 9.6 - -
CVE-2023-42498 2024-02-21 2025-01-28 9.6 - -
CVE-2024-25603 2024-02-21 2025-01-28 9.0 - -
CVE-2024-26266 2024-02-21 2025-01-28 9.0 - -
CVE-2024-26269 2024-02-21 2025-01-28 9.6 - -
CVE-2024-25151 2024-02-21 2025-01-28 5.4 - -
CVE-2023-47795 2024-02-21 2025-01-28 9.0 - -
CVE-2024-26271 2024-10-22 2024-12-10 8.8 - -
CVE-2024-26272 2024-10-22 2024-12-10 8.8 - -
CVE-2024-26273 2024-10-22 2024-12-10 8.8 - -
CVE-2024-38002 2024-10-22 2025-09-10 9.0 - -
CVE-2024-8980 2024-10-22 2024-12-10 9.6 - -
CVE-2024-11993 2024-12-17 2025-03-28 6.1 - -
CVE-2023-37940 2024-12-17 2025-01-28 4.8 - -
CVE-2025-2536 2025-03-19 2025-12-16 6.1 - -
CVE-2025-2565 2025-03-20 2025-12-16 4.3 - -
CVE-2025-3760 2025-04-17 2025-12-16 5.4 - -
CVE-2025-4388 2025-05-06 2025-12-16 6.1 - -
CVE-2025-3602 2025-06-16 2025-12-16 7.5 - -
CVE-2025-3526 2025-06-16 2025-12-16 7.5 - -
CVE-2025-3594 2025-06-16 2025-12-12 9.8 - -
CVE-2025-4599 2025-08-04 2025-12-15 6.1 - -
CVE-2025-4604 2025-08-04 2025-12-15 6.1 - -
CVE-2025-4576 2025-08-08 2025-12-15 6.1 - -
CVE-2025-4581 2025-08-09 2025-12-16 8.6 - -
CVE-2025-4655 2025-08-09 2025-12-19 5.0 - -
CVE-2025-43736 2025-08-12 2025-12-16 4.3 - -
CVE-2025-43735 2025-08-12 2025-12-16 6.1 - -
CVE-2025-43734 2025-08-12 2025-12-16 5.4 - -
CVE-2025-43733 2025-08-18 2025-12-16 5.4 - -
CVE-2025-43732 2025-08-18 2025-12-19 2.7 - -
CVE-2025-43731 2025-08-18 2025-12-19 5.4 - -
CVE-2025-43740 2025-08-19 2025-12-19 5.4 - -
CVE-2025-43739 2025-08-19 2025-12-19 4.3 - -
CVE-2025-43738 2025-08-19 2025-12-15 5.4 - -
CVE-2025-43737 2025-08-19 2025-12-15 5.4 - -
CVE-2025-43745 2025-08-19 2025-12-15 6.5 - -
CVE-2025-43743 2025-08-19 2025-12-15 4.3 - -
CVE-2025-43744 2025-08-19 2025-12-15 5.4 - -
CVE-2025-43741 2025-08-20 2025-12-15 5.4 - -
CVE-2025-43742 2025-08-20 2025-12-16 6.1 - -
CVE-2025-43749 2025-08-20 2025-12-16 5.3 - -
CVE-2025-43750 2025-08-20 2025-12-18 6.5 - -
CVE-2025-43748 2025-08-20 2025-12-16 6.8 - -
CVE-2025-43746 2025-08-20 2025-12-12 5.4 - -
CVE-2025-43757 2025-08-20 2025-12-12 5.4 - -
CVE-2025-43755 2025-08-21 2025-12-12 5.4 - -
CVE-2025-43756 2025-08-21 2025-12-12 5.4 - -
CVE-2025-43754 2025-08-21 2025-12-12 5.3 - -
CVE-2025-43747 2025-08-21 2025-12-12 6.5 - -
CVE-2025-43753 2025-08-21 2025-12-15 5.4 - -
CVE-2025-43752 2025-08-22 2025-12-16 6.5 - -
CVE-2025-43751 2025-08-22 2025-12-18 5.3 - -
CVE-2025-43760 2025-08-22 2025-12-16 5.4 - -
CVE-2025-43758 2025-08-22 2025-12-16 5.3 - -
CVE-2025-43759 2025-08-22 2025-12-16 2.7 - -
CVE-2025-43762 2025-08-22 2025-12-12 6.5 - -
CVE-2025-43761 2025-08-22 2025-12-12 6.1 - -
CVE-2025-43770 2025-08-23 2025-12-12 6.1 - -
CVE-2025-43768 2025-08-23 2025-12-12 7.7 - -
CVE-2025-43769 2025-08-23 2025-12-12 6.1 - -
CVE-2025-43767 2025-08-23 2025-12-12 6.1 - -
CVE-2025-43764 2025-08-23 2025-12-12 6.5 - -
CVE-2025-43765 2025-08-23 2025-12-12 6.1 - -
CVE-2025-43766 2025-08-23 2025-12-12 9.8 - -
CVE-2025-43773 2025-08-29 2025-12-16 9.1 - -
CVE-2025-3586 2025-09-01 2025-12-12 7.2 - -
CVE-2025-43763 2025-09-09 2025-12-12 6.5 - -
CVE-2025-43778 2025-09-09 2025-12-12 6.1 - -
CVE-2025-43777 2025-09-09 2025-12-12 5.3 - -
CVE-2025-43776 2025-09-09 2025-12-16 5.4 - -
CVE-2025-43775 2025-09-09 2025-12-16 5.4 - -
CVE-2025-43781 2025-09-09 2025-12-16 6.1 - -
CVE-2025-43786 2025-09-09 2025-12-16 5.3 - -
CVE-2025-43785 2025-09-10 2025-12-16 6.1 - -
CVE-2025-43784 2025-09-10 2025-12-16 6.5 - -
CVE-2025-43783 2025-09-10 2025-12-16 6.1 - -
CVE-2025-43782 2025-09-11 2025-12-16 4.3 - -
CVE-2025-43790 2025-09-11 2025-12-16 8.1 - -
CVE-2025-43788 2025-09-12 2025-12-16 4.3 - -
CVE-2025-43789 2025-09-12 2025-12-23 5.3 - -
CVE-2025-43787 2025-09-12 2025-12-16 5.4 - -
CVE-2025-43795 2025-09-12 2025-12-16 6.1 - -
CVE-2025-43796 2025-09-12 2025-12-16 7.5 - -
CVE-2025-43794 2025-09-15 2025-12-16 4.8 - -
CVE-2025-43793 2025-09-15 2025-12-16 7.5 - -
CVE-2025-43792 2025-09-15 2025-12-16 5.3 - -
CVE-2025-43791 2025-09-15 2025-12-16 6.1 - -
CVE-2025-43800 2025-09-15 2025-12-16 6.1 - -
CVE-2025-43798 2025-09-15 2025-12-16 6.5 - -
CVE-2025-43799 2025-09-15 2025-12-16 6.5 - -
CVE-2025-43797 2025-09-15 2025-12-16 5.4 - -
CVE-2025-43802 2025-09-15 2025-12-12 6.1 - -
CVE-2025-43801 2025-09-16 2025-12-12 7.5 - -
CVE-2025-43805 2025-09-16 2025-12-16 5.3 - -
CVE-2025-43804 2025-09-16 2025-11-07 6.1 - -
CVE-2025-43803 2025-09-19 2025-12-16 4.3 - -
CVE-2025-43809 2025-09-19 2025-12-16 4.3 - -
CVE-2025-43808 2025-09-19 2025-12-15 5.3 - -
CVE-2025-43807 2025-09-22 2025-12-15 5.4 - -
CVE-2025-43806 2025-09-22 2025-12-12 4.3 - -
CVE-2025-43810 2025-09-22 2025-12-12 4.3 - -
CVE-2025-43814 2025-09-22 2025-12-12 6.5 - -
CVE-2025-43779 2025-09-24 2025-12-15 6.1 - -
CVE-2025-43819 2025-09-24 2025-12-15 6.5 - -
CVE-2025-43816 2025-09-25 2025-12-15 7.5 - -
CVE-2025-43811 2025-09-29 2025-12-11 5.4 - -
CVE-2025-43815 2025-09-29 2025-12-11 6.1 - -
CVE-2025-43818 2025-09-29 2025-12-11 6.1 - -
CVE-2025-43820 2025-09-29 2025-12-11 5.4 - -
CVE-2025-43812 2025-09-29 2025-12-11 5.4 - -
CVE-2025-43813 2025-09-29 2025-12-11 8.2 - -
CVE-2025-43817 2025-09-29 2025-12-11 6.1 - -
CVE-2025-43827 2025-09-30 2025-12-15 4.3 - -
CVE-2025-43826 2025-09-30 2025-12-15 5.4 - -
CVE-2025-43825 2025-10-03 2025-12-15 6.5 - -
CVE-2025-43824 2025-10-06 2025-12-15 5.4 - -
CVE-2025-43823 2025-10-07 2025-12-15 5.4 - -
CVE-2025-43822 2025-10-07 2025-12-15 5.4 - -
CVE-2025-43821 2025-10-08 2025-12-15 5.4 - -
CVE-2025-43829 2025-10-08 2025-12-15 5.4 - -
CVE-2025-43830 2025-10-08 2025-12-12 6.1 - -
CVE-2025-43771 2025-10-08 2025-12-15 5.4 - -
CVE-2025-62240 2025-10-09 2025-12-12 5.4 - -
CVE-2025-62237 2025-10-10 2025-12-12 5.4 - -
CVE-2025-62238 2025-10-10 2025-12-12 5.4 - -
CVE-2025-62239 2025-10-10 2025-12-12 5.4 - -
CVE-2025-62245 2025-10-10 2025-12-12 4.3 - -
CVE-2025-62244 2025-10-13 2025-12-15 4.3 - -
CVE-2025-62243 2025-10-13 2025-12-15 5.4 - -
CVE-2025-62241 2025-10-13 2025-11-12 4.3 - -
CVE-2025-62242 2025-10-13 2025-11-07 4.3 - -
CVE-2025-62246 2025-10-13 2025-12-12 5.4 - -
CVE-2025-62252 2025-10-13 2025-12-12 4.3 - -
CVE-2025-62251 2025-10-13 2025-12-12 6.5 - -
CVE-2025-62250 2025-10-21 2025-12-12 6.5 - -
CVE-2025-62249 2025-10-21 2025-12-12 6.1 - -
CVE-2025-62248 2025-10-22 2025-12-11 4.8 - -
CVE-2025-62247 2025-10-22 2025-12-11 6.5 - -
CVE-2025-62256 2025-10-23 2025-11-10 5.3 - -
CVE-2025-62255 2025-10-23 2025-12-12 6.1 - -
CVE-2025-62254 2025-10-23 2025-11-10 7.5 - -
CVE-2025-62253 2025-10-27 2025-12-12 6.1 - -
CVE-2025-62263 2025-10-27 2025-11-10 5.4 - -
CVE-2025-62262 2025-10-27 2025-11-10 4.4 - -
CVE-2025-62260 2025-10-27 2025-11-10 7.5 - -
CVE-2025-62261 2025-10-27 2025-11-10 6.5 - -
CVE-2025-62258 2025-10-27 2025-11-10 6.5 - -
CVE-2025-62259 2025-10-27 2025-12-08 5.4 - -
CVE-2025-62257 2025-10-30 2025-11-10 5.3 - -
CVE-2025-62266 2025-10-30 2025-11-11 6.1 - -
CVE-2025-62265 2025-10-30 2025-11-11 5.4 - -
CVE-2025-62264 2025-10-31 2025-11-10 6.1 - -
CVE-2025-62267 2025-10-31 2025-11-10 6.1 - -
CVE-2025-62276 2025-11-01 2025-11-10 5.5 - -
CVE-2025-62275 2025-11-01 2025-11-10 5.3 - -

How SecUtils Interprets Product Data

SecUtils normalizes and enriches National Vulnerability Database (NVD) records for liferay digital_experience_platform by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and structuring the data for rapid analysis and asset correlation. For every vulnerability listed, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference information to enable organizations to prioritize patching and risk assessment efficiently. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for vulnerability management and security operations.