Количество 2
Количество 2
CVE-2023-33941
Multiple cross-site scripting (XSS) vulnerabilities in the Plugin for OAuth 2.0 module's OAuth2ProviderApplicationRedirect class in Liferay Portal 7.4.3.41 through 7.4.3.52, and Liferay DXP 7.4 update 41 through 52 allow remote attackers to inject arbitrary web script or HTML via the (1) code, or (2) error parameter.
GHSA-mvfv-w3fq-xp67
Cross-site scripting in Liferay Portal
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-33941 Multiple cross-site scripting (XSS) vulnerabilities in the Plugin for OAuth 2.0 module's OAuth2ProviderApplicationRedirect class in Liferay Portal 7.4.3.41 through 7.4.3.52, and Liferay DXP 7.4 update 41 through 52 allow remote attackers to inject arbitrary web script or HTML via the (1) code, or (2) error parameter. | CVSS3: 6.1 | 0% Низкий | больше 2 лет назад | |
GHSA-mvfv-w3fq-xp67 Cross-site scripting in Liferay Portal | CVSS3: 6.1 | 0% Низкий | больше 2 лет назад |
Уязвимостей на страницу