A Cross-site scripting (XSS) vulnerability in the Frontend Taglib module in Liferay Portal 7.3.2 through 7.4.3.16, and Liferay DXP 7.3 before update 6, and 7.4 before update 17 allows remote attackers to inject arbitrary web script or HTML.
Metrics
Affected Vendors & Products
References
History
Mon, 12 May 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-12T17:58:44.842Z
Reserved: 2022-10-03T00:00:00.000Z
Link: CVE-2022-42117

Updated: 2024-08-03T13:03:45.793Z

Status : Modified
Published: 2022-10-18T21:15:16.413
Modified: 2025-05-12T18:15:42.807
Link: CVE-2022-42117

No data.