Description
Liferay Portal through v7.4.0 and Liferay DXP through v7.1 were discovered to contain a cross-site scripting (XSS) vulnerability via the Gogo Shell module.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Source Control Directory Traversal (3.0.0)
WeBid Permissions, Privileges, and Access Controls Vulnerability (CVE-2008-7117)
WordPress Plugin The Events Calendar Countdown Addon Security Bypass (1.3.1)
WordPress Plugin Gmedia Photo Gallery Multiple Cross-Site Scripting Vulnerabilities (1.18.4)