Description
Liferay Portal through v7.4.0 and Liferay DXP through v7.1 were discovered to contain a cross-site scripting (XSS) vulnerability via the Gogo Shell module.
Remediation
References
Related Vulnerabilities
WordPress Plugin The Events Calendar Cross-Site Scripting (4.8.1)
WordPress Plugin Accept Stripe Donation-AidWP Security Bypass (2.8)
Liferay Portal Insecure Default Initialization of Resource Vulnerability (CVE-2023-33949)
WordPress Plugin Code Insert Manager (Q2W3 Inc Manager) ZeroClipboard Cross-Site Scripting (2.3.1)