CVE-2020-7961: Liferay Portal Deserialization of Untrusted Data
Liferay Portal Deserialization of Untrusted Data Vulnerability. Liferay Portal contains a deserialization of untrusted data vulnerability that allows remote attackers to execute code via JSON web services.
- CISA KEV-listed (remediation due 2022-05-03)
- EPSS 94.4% (100.0% percentile)