Description
Certain Liferay products are affected by: Missing SSL Certificate Validation in the Dynamic Data Mapping module's REST data providers. This affects Liferay Portal 7.1.0 through 7.4.2 and Liferay DXP 7.1 before fix pack 27, 7.2 before fix pack 17, and 7.3 before service pack 3.
Remediation
References
Related Vulnerabilities
MySQL CVE-2019-2974 Vulnerability (CVE-2019-2974)
WordPress Plugin WordPress Connect Cross-Site Scripting (2.0.3)
WordPress Plugin Waitlist Woocommerce (Back in stock notifier) Cross-Site Request Forgery (2.5.1)
WordPress Plugin WOOCS-Currency Switcher for WooCommerce Professional Cross-Site Scripting (1.3.7.2)
WordPress Plugin Rich Table of Contents Cross-Site Scripting (1.3.7)