Description
Liferay Portal v7.4.1 and below was discovered to contain a cross-site scripting (XSS) vulnerability via the keywords parameter under the Frontend Taglib module.
Remediation
References
Related Vulnerabilities
WordPress Plugin TweetScribe Cross-Site Request Forgery (1.1)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-6634)
WordPress Plugin Feedweb Unspecified Vulnerability (3.0.10)
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (7.5.32.7212)
WordPress Plugin Nofollow for external link Multiple Unspecified Vulnerabilities (1.1.2)