Looking for the vulnerability index of Invicti's legacy products?
Liferay DXP Observable Discrepancy Vulnerability - CVE-2025-43786 - Vulnerability Database

Liferay DXP Observable Discrepancy Vulnerability - CVE-2025-43786

Medium
Reference: CVE-2025-43786
Title: Liferay DXP Observable Discrepancy Vulnerability
Overview:

Enumeration of ERC from object entry in Liferay Portal 7.4.0 through 7.4.3.128 and Liferay DXP 2024.Q3.0 through 2024.Q3.1 2024.Q2.0 through 2024.Q2.13 2024.Q1.1 through 2024.Q1.12 2023.Q4.0 and 7.4 GA through update 92 allow attackers to determine existent ERC in the application by exploit the time response.