Description
Cross-site scripting (XSS) vulnerability in the Object module's edit object details page in Liferay Portal 7.4.3.4 through 7.4.3.36 allows remote attackers to inject arbitrary web script or HTML via a crafted payload injected into the object field's `Label` text field.
Remediation
References
Related Vulnerabilities
WordPress Plugin Clicky by Yoast Multiple Cross-Site Scripting Vulnerabilities (1.5)
WordPress Plugin EU Cookie Law for GDPR/CCPA Cross-Site Scripting (3.0.6)
WordPress Plugin 10Web Map Builder for Google Maps Cross-Site Scripting (1.0.71)
WordPress Plugin Social Share Button Cross-Site Scripting (2.1)