Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-46936 | Liferay Portal and Liferay DXP Vulnerable to Reflected XSS via the Export for Translation Page |
Github GHSA |
GHSA-w2g3-j73q-7qv7 | Liferay Portal and Liferay DXP Vulnerable to Reflected XSS via the Export for Translation Page |
No history.
Status: PUBLISHED
Assigner: Liferay
Published:
Updated: 2024-09-13T16:32:16.701Z
Reserved: 2023-09-11T08:54:24.312Z
Link: CVE-2023-42497
Updated: 2024-08-02T19:23:38.911Z
Status : Modified
Published: 2023-10-17T08:15:09.437
Modified: 2026-06-17T06:23:57.623
Link: CVE-2023-42497
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD
Github GHSA