CVE-2016-10735
09.01.2019, 05:29
In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041.
| Vendor | Product | Version |
|---|---|---|
| getbootstrap | bootstrap | 3.0.0 ≤ 𝑥 < 3.4.0 |
| getbootstrap | bootstrap | 4.0.0:beta |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| twitter-bootstrap |
| ||||||||||||||||||||||||||||||
| twitter-bootstrap3 |
| ||||||||||||||||||||||||||||||
| twitter-bootstrap4 |
|
References