Description
XSS exists in Liferay Portal before 7.0 CE GA4(7.0.3) via a crafted title or summary that is mishandled in the Web Content Display.
Remediation
References
Related Vulnerabilities
Spring Cloud Gateway Incorrect Authorization Vulnerability (CVE-2021-22051)
WordPress 4.7.x Cross-Domain Flash Injection Vulnerability (4.7 - 4.7.8)
Atlassian Jira Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2020-14174)
Oracle Database Server CVE-2013-5771 Vulnerability (CVE-2013-5771)