Количество 2
Количество 2
CVE-2023-33942
Cross-site scripting (XSS) vulnerability in the Web Content Display widget's article selector in Liferay Liferay Portal 7.4.3.50, and Liferay DXP 7.4 update 50 allows remote attackers to inject arbitrary web script or HTML via a crafted payload injected into a web content article's `Title` field.
GHSA-wv99-wmpf-jrqr
Cross-site scripting in Liferay Portal
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-33942 Cross-site scripting (XSS) vulnerability in the Web Content Display widget's article selector in Liferay Liferay Portal 7.4.3.50, and Liferay DXP 7.4 update 50 allows remote attackers to inject arbitrary web script or HTML via a crafted payload injected into a web content article's `Title` field. | CVSS3: 5.4 | 0% Низкий | больше 2 лет назад | |
GHSA-wv99-wmpf-jrqr Cross-site scripting in Liferay Portal | CVSS3: 6.4 | 0% Низкий | больше 2 лет назад |
Уязвимостей на страницу