A vulnerability marked as problematic has been reported in Red Hat KeyCloak. Affected by this issue is some unknown functionality of the file model/storage-services/src/main/java/org/keycloak/exportimport/AbstractFileBasedImportProvider.java of the component Environment Variable Handler. Performing manipulation results in injection.
This vulnerability is identified as CVE-2025-9162. The attack can only be performed from the local network. There is not any exploit available.
A vulnerability described as critical has been identified in xmldom up to 0.6.0. Affected by this issue is some unknown functionality of the component XMLSerializer module. The manipulation results in escaping of output.
This vulnerability is known as CVE-2021-32796. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.
A vulnerability, which was classified as problematic, has been found in Liferay Portal and DXP. This issue affects some unknown processing. The manipulation of the argument _com_liferay_layout_admin_web_portlet_GroupPagesPortlet_type leads to cross site scripting.
This vulnerability is documented as CVE-2025-43755. The attack can be initiated remotely. There is not any exploit available.
A vulnerability was found in Liferay Portal and DXP and classified as problematic. The impacted element is an unknown function. Such manipulation of the argument snippet leads to cross site scripting.
This vulnerability is traded as CVE-2025-43756. The attack may be launched remotely. There is no exploit available.
A vulnerability, which was classified as problematic, has been found in Liferay Portal and DXP. The impacted element is an unknown function. This manipulation causes observable timing discrepancy.
This vulnerability is registered as CVE-2025-43754. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability classified as problematic has been found in Liferay Portal and DXP. The affected element is an unknown function. This manipulation causes cross site scripting.
The identification of this vulnerability is CVE-2025-43753. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability marked as critical has been reported in Liferay Portal and DXP. This issue affects some unknown processing of the component document_library. The manipulation leads to allocation of resources.
This vulnerability is uniquely identified as CVE-2025-43752. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability classified as problematic has been found in GnuTLS. This issue affects some unknown processing of the component RSA Handler. Performing manipulation results in observable timing discrepancy.
This vulnerability is known as CVE-2023-0361. Remote exploitation of the attack is possible. No exploit is available.
To fix this issue, it is recommended to deploy a patch.