CVE-2024-6531 — Cross-site Scripting in Bootstrap
Severity
6.4MEDIUMOSV
No vectorEPSS
No EPSS data
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 5
Description
Title: Bootstrap vulnerabilities
Summary: Several security issues were fixed in Bootstrap.
It was discovered that Bootstrap did not correctly sanitize certain input in
the carousel component. An attacker could possibly use this issue to execute a
cross-site scripting (XSS) attack. (CVE-2024-6484, CVE-2024-6531)
It was discovered that Bootstrap did not correctly sanitize certain input in
the button plugin. An attacker could possibly use this issue to execute a
cross-site scripting (XSS) attack…
Affected Packages1 packages
🔴Vulnerability Details
2📋Vendor Advisories
1💬Community
1Bugzilla▶
CVE-2023-6531 kernel: GC's deletion of an SKB races with unix_stream_read_generic() leading to UAF↗2023-12-05