Security Advisory

CVE-2022-42119

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-11-15 00:00:00
Last updated 2025-04-30 14:37:13
Assigner mitre
State PUBLISHED

Description

Certain Liferay products are vulnerable to Cross Site Scripting (XSS) via the Commerce module. This affects Liferay Portal 7.3.5 through 7.4.2 and Liferay DXP 7.3 before update 8.