CVE-2017-17868: Liferay Portal

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

In Liferay Portal 6.1.0, the tags section has XSS via a Public Render Parameter (p_r_p) value, as demonstrated by p_r_p_564233524_tag.

Affected products

  • Liferay Liferay Portal: version 6.1.0 only

Published 2017-12-27. Last modified 2026-06-17.