VYPR

Maven package

com.liferay/com.liferay.asset.categories.admin.web

pkg:maven/com.liferay/com.liferay.asset.categories.admin.web

Vulnerabilities (1)

  • CVE-2023-42629Oct 17, 2023
    affected < 5.0.87fixed 5.0.87

    Stored cross-site scripting (XSS) vulnerability in the manage vocabulary page in Liferay Portal 7.4.2 through 7.4.3.87, and Liferay DXP 7.4 before update 88 allows remote attackers to inject arbitrary web script or HTML via a crafted payload injected into a Vocabulary's 'descript