• caglararli@hotmail.com
  • 05386281520

CVE-2024-25603 | Liferay Portal/DXP DDMForm instanceId cross site scripting

Çağlar Arlı      -    11 Views

CVE-2024-25603 | Liferay Portal/DXP DDMForm instanceId cross site scripting

A vulnerability, which was classified as problematic, was found in Liferay Portal and DXP. This affects an unknown part of the component DDMForm. The manipulation of the argument instanceId leads to cross site scripting. This vulnerability is uniquely identified as CVE-2024-25603. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to apply a patch to fix this issue.