Description
XSS exists in Liferay Portal before 7.0 CE GA4(7.0.3) via a crafted title or summary that is mishandled in the Web Content Display.
Remediation
References
Related Vulnerabilities
osTicket Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-15580)
PostgreSQL Improper Access Control Vulnerability (CVE-2019-10127)
WordPress Plugin MasterStudy LMS-for Online Courses and Education Local File Inclusion (3.3.0)
WordPress Plugin Japanized For WooCommerce Cross-Site Scripting (2.5.4)