Is Liferay SaaS/PaaS vulnerable to CVE-2023-20864 and CVE-2023-20865?

Note: please note that Liferay has renamed its Liferay Experience Could offerings to Liferay SaaS (formerly LXC) and Liferay PaaS (formerly LXC-SM).

Issue

  • Is Liferay SaaS/PaaS vulnerable to CVE-2023-20864 and CVE-2023-20865?

Environment

  • Liferay SaaS
  • Liferay PaaS

Resolution

  • These vulnerabilities do not affect Liferay because Liferay does not use VMware. The Liferay SaaS and Liferay PaaS architecture does not use VMware either.
     
    So, the vulnerabilities CVE-2023-20864 and CVE-2023-20865 will not have any effect on Liferay.

 

 

Was this article helpful?
0 out of 0 found this helpful