CVE-2025-4655

MEDIUM

Liferay DXP 2024.Q1.1-2024.Q1.15 - Server-Side Request Forgery via FreeMarker Template URL Bypass

Title source: llm
STIX 2.1

Description

SSRF vulnerability in FreeMarker templates in Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.5, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.15, 7.4 GA through update 92 allows template editors to bypass access validations via crafted URLs.

Scores

CVSS v3 5.0
EPSS 0.0006
EPSS Percentile 17.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-918
Status published
Products (3)
com.liferay.portal/release.dxp.bom 2025.Q1.0 - 2025.Q1.6Maven
com.liferay.portal/release.portal.bom 7.4.0Maven
liferay/digital_experience_platform 7.4 (48 CPE variants)
Published Aug 09, 2025
Tracked Since Feb 18, 2026