Executive brief
Liferay Portal reflected cross-site scripting (XSS) vulnerability in the google_gaget
Affected products
- Maven com.liferay.portal:com.liferay.portal.impl
Junglewise Threat Intelligence
CVE-2025-62249 · Severity: medium · CVSS 4 · Published 2025-10-21
Technologies: com.liferay.portal:com.liferay.portal.impl (Maven). Vendors: Maven.
Liferay Portal reflected cross-site scripting (XSS) vulnerability in the google_gaget