Back to search
CVE-2016-10735
Published: Jan 9, 2019
Modified: Aug 6, 2024
PUBLISHED
Description
In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://github.com/twbs/bootstrap/pull/26460
x_refsource_MISC
https://github.com/twbs/bootstrap/issues/20184
x_refsource_MISC
https://github.com/twbs/bootstrap/pull/23687
x_refsource_MISC
https://github.com/twbs/bootstrap/pull/23679
x_refsource_MISC
https://blog.getbootstrap.com/2018/12/13/bootstrap-3-4-0/
x_refsource_MISC
RHSA-2019:1456
vendor-advisory
x_refsource_REDHAT
RHBA-2019:1076
vendor-advisory
x_refsource_REDHAT
RHBA-2019:1570
vendor-advisory
x_refsource_REDHAT
RHSA-2019:3023
vendor-advisory
x_refsource_REDHAT
RHSA-2020:0132
vendor-advisory
x_refsource_REDHAT
RHSA-2020:0133
vendor-advisory
x_refsource_REDHAT
https://www.tenable.com/security/tns-2021-14
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now