Executive brief
Liferay Portal has stored cross-site scripting (XSS) vulnerability
Affected products
- Maven com.liferay.portal:com.liferay.portal.impl
Junglewise Threat Intelligence
CVE-2025-43794 · Severity: medium · CVSS 4 · Published 2025-09-15
Technologies: com.liferay.portal:com.liferay.portal.impl (Maven). Vendors: Maven.
Liferay Portal has stored cross-site scripting (XSS) vulnerability