Логотип exploitDog
bind:CVE-2025-43735
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-43735

Количество 2

Количество 2

nvd логотип

CVE-2025-43735

2 дня назад

A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.131, and Liferay DXP 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.12 and 7.4 GA through update 92 allows an remote non-authenticated attacker to inject JavaScript into the google_gadget.

EPSS: Низкий
github логотип

GHSA-222w-xmc5-jhp3

2 дня назад

Liferay Portal and Liferay DXP have a reflected cross-site scripting vulnerability

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-43735

A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.131, and Liferay DXP 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.12 and 7.4 GA through update 92 allows an remote non-authenticated attacker to inject JavaScript into the google_gadget.

0%
Низкий
2 дня назад
github логотип
GHSA-222w-xmc5-jhp3

Liferay Portal and Liferay DXP have a reflected cross-site scripting vulnerability

0%
Низкий
2 дня назад

Уязвимостей на страницу