Liferay DXP Allocation of Resources Without Limits or Throttling Vulnerability - CVE-2021-33320 - Vulnerability Database

Liferay DXP Allocation of Resources Without Limits or Throttling Vulnerability - CVE-2021-33320

Medium
Reference: CVE-2021-33320
Title: Liferay DXP Allocation of Resources Without Limits or Throttling Vulnerability
Overview:

The Flags module in Liferay Portal 7.3.1 and earlier and Liferay DXP 7.0 before fix pack 96 7.1 before fix pack 20 and 7.2 before fix pack 5 does not limit the rate at which content can be flagged as inappropriate which allows remote authenticated users to spam the site administrator with emails