Description
Liferay Portal v7.3.2 and below and Liferay DXP v7.0 and below were discovered to contain a cross-site scripting (XSS) vulnerability via the script console under the Server module.
Remediation
References
Related Vulnerabilities
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-1834)
WordPress Plugin PickPlugins Product Slider for WooCommerce Unspecified Vulnerability (1.13.23)
MediaWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2010-1648)
Oracle HTTP Server NULL Pointer Dereference Vulnerability (CVE-2021-44224)