A vulnerability was found in Liferay Portal and DXP up to 7.4.3.87. It has been rated as problematic. This issue affects some unknown processing of the component Access Policy Page. The manipulation of the argument Service Class leads to cross site scripting.

The identification of this vulnerability is CVE-2023-37940. The attack may be initiated remotely. There is no exploit available.