getbootstrap kayıtları
getbootstrap üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')8
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2019-10842İstismar yok | Arbitrary code execution (via backdoor code) was discovered in bootstrap-sass 3.2.0.3, when downloaded from rubygems.org.getbootstrap · bootstrap-sass · CWE-94 | Kritik9,8 | — | %4,9 | 4 Nis 2019 |
29İzleyin | CVE-2019-8331Kavram kanıtı | In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover data-template attribute.getbootstrap · bootstrap · CWE-79 | Orta6,1 | — | %16,4 | 20 Şub 2019 |
25İzleyin | CVE-2018-14041Kavram kanıtı | In Bootstrap before 4.1.2, XSS is possible in the data-target property of scrollspy.getbootstrap · bootstrap · CWE-79 | Orta6,1 | — | %4,3 | 13 Tem 2018 |
25İzleyin | CVE-2018-14040Kavram kanıtı | In Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute.debian · debian linux · CWE-79 | Orta6,1 | — | %4,1 | 13 Tem 2018 |
25İzleyin | CVE-2016-10735Kavram kanıtı | In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability thangetbootstrap · bootstrap · CWE-79 | Orta6,1 | — | %4,0 | 9 Oca 2019 |
25İzleyin | CVE-2018-14042Kavram kanıtı | In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.getbootstrap · bootstrap · CWE-79 | Orta6,1 | — | %4,0 | 13 Tem 2018 |
25İzleyin | CVE-2018-20677İstismar yok | In Bootstrap before 3.4.0, XSS is possible in the affix configuration target property.getbootstrap · bootstrap · CWE-79 | Orta6,1 | — | %4,0 | 9 Oca 2019 |
25İzleyin | CVE-2018-20676İstismar yok | In Bootstrap before 3.4.0, XSS is possible in the tooltip data-viewport attribute.getbootstrap · bootstrap · CWE-79 | Orta6,1 | — | %3,8 | 9 Oca 2019 |
25İzleyin | CVE-2024-6485Kavram kanıtı | XSS in Bootstrap button componentbootstrap · bootstrap · CWE-79 | Orta6,4 | — | %0,5 | 11 Tem 2024 |
- CVE-2019-1084240Planlayın
Arbitrary code execution (via backdoor code) was discovered in bootstrap-sass 3.2.0.3, when downloaded from rubygems.org.
KritikCVSS 9,8İstismar yokEPSS %5getbootstrap · bootstrap-sass4 Nis 2019
- CVE-2019-833129İzleyin
In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover data-template attribute.
OrtaCVSS 6,1Kavram kanıtıEPSS %16getbootstrap · bootstrap20 Şub 2019
- CVE-2018-1404125İzleyin
In Bootstrap before 4.1.2, XSS is possible in the data-target property of scrollspy.
OrtaCVSS 6,1Kavram kanıtıEPSS %4getbootstrap · bootstrap13 Tem 2018
- CVE-2018-1404025İzleyin
In Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute.
OrtaCVSS 6,1Kavram kanıtıEPSS %4debian · debian linux13 Tem 2018
- CVE-2016-1073525İzleyin
In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than
OrtaCVSS 6,1Kavram kanıtıEPSS %4getbootstrap · bootstrap9 Oca 2019
- CVE-2018-1404225İzleyin
In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.
OrtaCVSS 6,1Kavram kanıtıEPSS %4getbootstrap · bootstrap13 Tem 2018
- CVE-2018-2067725İzleyin
In Bootstrap before 3.4.0, XSS is possible in the affix configuration target property.
OrtaCVSS 6,1İstismar yokEPSS %4getbootstrap · bootstrap9 Oca 2019
- CVE-2018-2067625İzleyin
In Bootstrap before 3.4.0, XSS is possible in the tooltip data-viewport attribute.
OrtaCVSS 6,1İstismar yokEPSS %4getbootstrap · bootstrap9 Oca 2019
- CVE-2024-648525İzleyin
XSS in Bootstrap button component
OrtaCVSS 6,4Kavram kanıtıEPSS %0bootstrap · bootstrap11 Tem 2024