Description
Liferay Portal through 7.2.0 GA1 allows XSS via a journal article title to journal_article/page.jsp in journal/journal-taglib.
Remediation
References
https://github.com/liferay/liferay-portal/commit/7e063aed70f947a92bb43a4471e0c4e650fe8f7f
Related Vulnerabilities
CVE-2019-18213 Vulnerability in maven package org.lsp4xml:org.eclipse.lsp4xml.extensions.emmet
CVE-2022-23944 Vulnerability in maven package org.apache.shenyu:shenyu-common
CVE-2021-31712 Vulnerability in npm package react-draft-wysiwyg
CVE-2020-15232 Vulnerability in maven package org.mapfish.print:print-standalone