Liferay Portal 6.2 EE SP8 Cross Site Scripting

Liferay Portal versions 6.2 EE SP8 and below suffer from a cross site scripting vulnerability.