Skip to content

[Snyk] Security upgrade com.liferay.portal:portal-service from 6.2.1 to 6.2.5#26

Merged
DavidePastore merged 3 commits intomasterfrom
snyk-fix-55e4ebe86e4c97e9ead2a7c7956802ed
Nov 9, 2025
Merged

[Snyk] Security upgrade com.liferay.portal:portal-service from 6.2.1 to 6.2.5#26
DavidePastore merged 3 commits intomasterfrom
snyk-fix-55e4ebe86e4c97e9ead2a7c7956802ed

Conversation

@DavidePastore
Copy link
Owner

snyk-top-banner

Snyk has created this PR to fix 1 vulnerabilities in the maven dependencies of this project.

Snyk changed the following file(s):

  • pom.xml

Vulnerabilities that will be fixed with an upgrade:

Issue Score Upgrade
medium severity Arbitrary File Upload
SNYK-JAVA-COMLIFERAYPORTAL-13671404
  722   com.liferay.portal:portal-service:
6.2.1 -> 6.2.5
Mature

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Arbitrary File Upload

@DavidePastore DavidePastore added the dependencies Pull requests that update a dependency file label Nov 9, 2025
@DavidePastore DavidePastore self-assigned this Nov 9, 2025
@DavidePastore DavidePastore added this to the 0.1.1 milestone Nov 9, 2025
@DavidePastore DavidePastore merged commit 884a38b into master Nov 9, 2025
13 checks passed
@DavidePastore DavidePastore deleted the snyk-fix-55e4ebe86e4c97e9ead2a7c7956802ed branch November 9, 2025 16:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants