logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-42629

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-42629

Description:
Stored cross-site scripting (XSS) vulnerability in the manage vocabulary page in Liferay Portal 7.4.2 through 7.4.3.87, and Liferay DXP 7.4 before update 88 allows remote attackers to inject arbitrary web script or HTML via a crafted payload injected into a Vocabulary's 'description' text field.
Last updated date:
12/28/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
12/28/2023
Reference url to background

https://www.pentagrid.ch/en/blog/stored-cross-site-scripting-vulnerabilities-in-liferay-portal/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy