Description
Liferay Portal through v7.3.6 and Liferay DXP through v7.3 were discovered to contain a cross-site scripting (XSS) vulnerability via the Edit Blog Entry function under the Blog module.
Remediation
References
Related Vulnerabilities
Envoy Proxy Improper Input Validation Vulnerability (CVE-2019-9900)
Oracle JRE CVE-2014-0461 Vulnerability (CVE-2014-0461)
MySQL CVE-2019-2997 Vulnerability (CVE-2019-2997)
WordPress Plugin WP to Twitter Cross-Site Scripting (3.0.5)
WordPress Plugin File Away Multiple Unspecified Vulnerabilities (3.8.4)