CVE-2025-43761 | Liferay Portal/DXP ajax.html cross site scripting (EUVD-2025-25625)
A vulnerability was found in Liferay Portal and DXP. It has been declared as problematic. Affected is an unknown function of the file frontend-editor-ckeditor-web/ckeditor/samples/old/ajax.html. Executing manipulation can lead to cross site scripting.
This vulnerability is handled as CVE-2025-43761. The attack can be executed remotely. There is not any exploit available.