Capability

Security

Liferay DXP is built with security in mind. A variety of standards based authentication methods and integrations can be used to ensure secure access to a site and its resources. Robust role-based access control with permissions gives you fine grained control over what authenticated and unauthenticated users can access, share, or edit. Liferay DXP’s web services also have a multi-layered and configurable approach to security and authorization.

Feature
Deployment Approach
Base Price is not reflecting in the UI while passing the 'price' parameters in the Headless API
Issue While creating the product via a headless API and providing the SKUs field, the price is not updated. It's showing as 0. Steps to reproduce: 1. Start Liferay DXP 7.4 U54. 2. Navigate to Commerce > Options....
Selecting more than 20 categories in the product filter gives the ElasticsearchStatusException
Issue Steps to reproduce: 1. Start Liferay DXP 7.4  2. Navigate to the Global Site > Categorization > Categories. 3. Create more than 20 categories. 4. Now, navigate to Products > Click on FILTERS. 5. Select all...
JQuery version is exposed
Issue Possible information leakage by disclosure of the used JQuery version in the loaded JS files. Environment Liferay DXP 7.0+ Resolution Hiding the version in JQuery is against the the license, where they...
Can I export Custom Events statistics from Analytics Cloud?
Issue I created some Custom Events in my Analytics Cloud workspace. I can see the Event Analysis when I navigate to Touchpoints > Events I see no option to export the data. Is it possible to do that somehow?...
After patching, all publications in flight are outdated.
Issue After updating our fix pack level, all publications in flight are outdated. Steps to reproduce the issue: Add new Publication called "lmp_excel_upd" Update Web Content in that Publication "lmp_excel_upd" for...
Web content with text longer than 10923 characters does not appear in the asset publisher
Please be aware that the page you are viewing has been machine translated from Japanese into English and may contain some translation errors. If you observe any issues with the translation, please contact us....
I cannot publish Web content with E-mail type links
Issue I cannot publish Web content after including an email-type link. The UI shows this error: Error: Your request failed to complete Environment Liferay DXP 7.4 U60 - U69 Resolution Please update to Liferay DXP...
Logout function after disabling header
Issue If we disable "Show Header" in Site Builder > Pages > Public/Private Pages settings > Look and Feel > Show Header, the user icon is not there. How should a user log out in this case? Environment 7.2 Resolution...
How to know the pages that have added a specific Portlet
Issue Is there a way that allows me to identify which portal pages have added a specific portlet based on the Portlet ID? Environment Liferay DXP 7.0+ Resolution Please run the attached...
Blog posts with images in Webp format cannot be published
Issue When trying to publish blogs with images in .webp format, an error is displayed in the UI and the publication is not carried out. Environment Liferay DXP 7.3.X Liferay DXP 7.2.X Resolution Please request a...
Error when embedding videos on blog using TinyMCE
Issue When trying to embed videos in blogs using TinyMCE, using the files present in documents and media, the video is not embedded, with a gray screen. Environment Liferay DXP 7.2.X Resolution Upgrade to Liferay...
Import .lar name display as 'Untitled' after successfully upload .lar from import section
Issue LAR imports are all named 'Untitled' Steps to Reproduce: 1) Navigate to Menu > Publishing > Export 2) Export a LAR of the site 3) Go to Menu > Publishing > Import 4) Import the LAR of the site Expected...
Can I specify multiple roles for workflow notification settings?
Please be aware that the page you are viewing has been machine translated from Japanese into English and may contain some translation errors. If you observe any issues with the translation, please contact us. Issue...
SystemEvent table might accumulate in size over time
Issue You might encounter a behavior where your SystemEvent table has increased to a size which you deem troublesome. The SystemEvent table contains the deletion events of assets for Staging. These events can be...
Double clicking the accent key in the template editor crashes the entire page
Issue When accidentally double-clicking the accent key in the template editor using a browser with Windows, to try to write for example "á", the portal hangs and nothing can be done except exit the page....
Headless Endpoint WorkflowInstance Change Transition Not Working
Issue When trying to use endpoint '/o/headless-admin-workflow/v1.0/workflow-instances/{workflowInstanceId}/change-transition' to approve and reject workflow tasks using the headless endpoint we are getting 400...
Clarification on createDate attribute in the user_ table
Issue We are unsure of the following: does Liferay update the createDate column in the user_ table when a user performs their first login to Liferay? Environment Liferay DXP 7.4 Liferay DXP 7.3 Liferay DXP 7.2...
Cannot set proper permissions for Panel Category Entries in a Custom Site
Issue The custom site panel category entries' panel app permissions do not work as intended. We are unable to grant permissions to access the panel app through a "Site role" if the category key does not start...
A Site Administrator cannot view or update the value of page or site custom fields
Issue A Liferay administrator has created custom fields for pages and sites.  A site administrator cannot update or even view the value of these custom fields when going to a page configuration or to the site...
Characters or strings that cannot be specified in the friendly URL of a page
Please be aware that the page you are viewing has been machine translated from Japanese into English and may contain some translation errors. If you observe any issues with the translation, please contact us. Issue...
Time zone of the web content publication date and time
Please be aware that the page you are viewing has been machine translated from Japanese into English and may contain some translation errors. If you observe any issues with the translation, please contact us. Issue...
Difference between "all" and "any" rules for asset publishers
Please be aware that the page you are viewing has been machine translated from Japanese into English and may contain some translation errors. If you observe any issues with the translation, please contact us. Issue...
Behavior when password expiration date is changed
Please be aware that the page you are viewing has been machine translated from Japanese into English and may contain some translation errors. If you observe any issues with the translation, please contact us. Issue...
Maximum number of users for Dynatrace
Note: please note that Liferay has renamed its Liferay Experience Could offerings to Liferay SaaS (formerly LXC) and Liferay PaaS (formerly LXC-SM). Issue I would like to know how many users can I assign to our...
Websphere and Liferay Update 64, icons not displaying.
Issue When using Liferay 7.4 Update 64 with Websphere 9, the eye icon(Toggle Controls icon) is in the wrong place and makes it so that you are not able to edit the page. Environment Liferay 7.4 update 64 IBM Websphere...
Why isn't the file extension included by default in the new document URLs?
Issue Liferay 7.4 has introduced a new way of having friendly urls for documents:...
Unable to single publish web content after LAR import to staging enabled site in 7.2
Issue In 7.2, after importing a LAR file to a staging enabled site, single publish of web content does not propagate to live successfully, and content in the live site remains unchanged Environment DXP 7.2 Resolution...
Filter on Product List UI does not show all category
Issue Not all categories appear when filtering the product list Steps to reproduce: 1) Create a few categories with a hierarchy up to level 3 or 4. 2) Navigate to Commerce> Products> select the 'Filter' 3) Select...
Checked Sites become unchecked at Instance Settings > Analytics Cloud
Issue At Instance Settings > Analytics Cloud, when a new site is checked on the first page and another site is selected on a subsequent page, the first site becomes unselected after saving the modification. How can any...
How to map Web Content Selector fields to Web Content Display?
Issue Can a Web Content selector field be mapped to a Web Content Display on a Display Page Template? Right now, I can only select one specific Web Content article. Environment DXP 7.0+ Resolution This feature does not...
I cannot use special characters in Templates
Issue I included certain special characters in a template such as ¡áéíóú and saved it. When I reopened the template, the HTML and Elements sections stopped displaying. When I saved the template again, the UI showed...
Documents and Media table view does not fit into the screen on mobile phone
Issue Table view is set up for Documents and Media widget If I view the page on mobile screen, the table does not fit There is a scrollbar to see all columns but it is small and difficult to use I am worried that...
Detected Vulnerabilities related to Struts
Issue A security scan has picked up the following vulnerabilities related to struts-core:  CVE-2012-1007, CVE-2014-0112 CVE-2014-0112: ParametersInterceptor in Apache Struts before 2.3.20 does not properly restrict...
Disable Commerce module on Liferay 7.4
Issue Liferay Commerce is not relevant for the business user, they would like to disable it in DXP 7.4 Property added to portal-ext.properties file: enterprise.product.commerce.enabled=false Environment DXP 7.4...
The same URL repeats in sitemap.xml even after disable sitemap index
Issue When the property "xml.sitemap.index.enabled" is false one sitemap is created for each site. When there's a unique sitemap index the same URL is repeating several times.   Environment DXP 7.3+ DXP 7.4 u4...
Entity content is too long for the configured buffer limit
Issue When performing a custom search such as: IndexSearcherHelperUtil.search(searchContext, query); the following exception is thrown from Elasticsearch and no results are obtained from the...
JavaScript Errors when deleting newly added data to 'Custom Excluded Paths' field in 'Frontend SPA Infrastructure'
Issue After data has been entered into the Custom Excluded Paths field in the Frontend SPA Infrastructure, deleting that data results in the following JavaScript errors in the browser console: Uncaught Error: No route...
Unable to select the empty vocabulary
Issue The user is not able to select the empty vocabulary on the modal. Step to reproduce: 1) Add a new site 2) Add two vocabularies 3) Add a category under one vocabulary 4) Open the category ellipsis menu 5) Move...
Form takes a shot delay of approximately 1 second to load
Issue There is a short delay (approximately 1 second) for the form to become available after page load Environment DXP 7.1 or higher Resolution It is true that there is a short delay (about 1 second) for the form to...
Display Template "List Menu" is always showing the full pages tree in Menu Display widget
Issue Although 'Auto' mode is configured for the List Menu display template in Menu Display widget, the full pages hierarchy is displayed.  Environment Liferay DXP 7.3+ Resolution In previous versions of...