Liferay Portal through 7.2.0 GA1 allows XSS via a journal article title to journal_article/page.jsp in journal/journal-taglib.
Advisories
Source ID Title
EUVD EUVD EUVD-2019-6971 Liferay Portal Vulnerable to Cross-Site Scripting (XSS) via a Journal Article Title
Github GHSA Github GHSA GHSA-m2gx-7pvx-3gvg Liferay Portal Vulnerable to Cross-Site Scripting (XSS) via a Journal Article Title
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T01:10:40.970Z

Reserved: 2019-09-09T00:00:00

Link: CVE-2019-16147

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-09-09T21:15:11.077

Modified: 2024-11-21T04:30:08.917

Link: CVE-2019-16147

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.