Security

Volver a Security Alert

Liferay Security Alert: 2019 January

The following issue may compromise the security of your Liferay Portal Enterprise Edition (EE) or Liferay Digital Experience Platform implementation. This notification provides a description of the latest security vulnerability and recommended actions for Liferay Subscribers.

Affected Version/s

  • Liferay Digital Experience Platform 7.1

Vulnerability Information

  • LSV-422: Users with User.VIEW permission can update other user's password

Download

Please see the Help Center Security Vulnerability page for more information on the vulnerabilities and affected versions for each issue.

git add . && git commit -m "Update dxp cloud stack to XXX"

After pushing these changes to the remote repository, a build will be created in Liferay Cloud and it is ready to deploy.