CVE-2025-43815 | Liferay Portal/DXP cross site scripting (WID-SEC-2025-2151)
A vulnerability identified as problematic has been detected in Liferay Portal and DXP. This issue affects some unknown processing. The manipulation of the argument com_liferay_layout_admin_web_portlet_GroupPagesPortlet_backURLTitle leads to cross site scripting.
This vulnerability is listed as CVE-2025-43815. The attack may be initiated remotely. There is no available exploit.