Vulnerabilities > Getbootstrap > Bootstrap > 4.0.0

DATE CVE VULNERABILITY TITLE RISK
2019-01-09 CVE-2016-10735 Cross-site Scripting vulnerability in Getbootstrap Bootstrap
In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041.
4.3
2018-07-13 CVE-2018-14042 Cross-site Scripting vulnerability in Getbootstrap Bootstrap
In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.
network
low complexity
getbootstrap CWE-79
6.1
2018-07-13 CVE-2018-14041 Cross-site Scripting vulnerability in Getbootstrap Bootstrap 4.0.0/4.1.0/4.1.1
In Bootstrap before 4.1.2, XSS is possible in the data-target property of scrollspy.
network
low complexity
getbootstrap CWE-79
6.1
2018-07-13 CVE-2018-14040 Cross-site Scripting vulnerability in multiple products
In Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute.
network
low complexity
debian getbootstrap CWE-79
6.1