Total vulnerabilities in the database
Cross-site scripting (XSS) vulnerability in the Object module's edit object details page in Liferay Portal 7.4.3.4 through 7.4.3.36 allows remote attackers to inject arbitrary web script or HTML via a crafted payload injected into the object field's Label
text field.
Software | From | Fixed in |
---|---|---|
liferay / liferay_portal | 7.4.3.4 | 7.4.3.37 |