Multiple cross-site scripting (XSS)... CVE-2022-26594

4.3 AV AC AU C I A
发布: 2022-04-15
修订: 2024-11-21

Multiple cross-site scripting (XSS) vulnerabilities in Liferay Portal 7.3.5 through 7.4.0, and Liferay DXP 7.3 before service pack 3 allow remote attackers to inject arbitrary web script or HTML via a form field's help text to (1) Forms module's form builder, or (2) App Builder module's object form view's form builder.

0%
暂无可用Exp或PoC
当前有2条受影响产品信息