CVE-2016-10735
09.01.2019, 05:29
In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041.
Vendor | Product | Version |
---|---|---|
getbootstrap | bootstrap | 3.0.0 ≤ 𝑥 < 3.4.0 |
getbootstrap | bootstrap | 4.0.0:beta |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
twitter-bootstrap |
| ||||||||||||||||||||||||||||||
twitter-bootstrap3 |
| ||||||||||||||||||||||||||||||
twitter-bootstrap4 |
|
References