CVE-2022-28978 | Liferay Portal/DXP User Membership Administration Page Username cross site scripting
A vulnerability was found in Liferay Portal and DXP. It has been classified as problematic. This affects an unknown part of the component User Membership Administration Page. Performing a manipulation of the argument Username results in cross site scripting.
This vulnerability is reported as CVE-2022-28978. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.