Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-1647

Опубликовано: 15 мая 2025
Источник: debian
EPSS Низкий

Описание

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Bootstrap allows Cross-Site Scripting (XSS).This issue affects Bootstrap: from 3.4.1 before 4.0.0.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
twitter-bootstrap4not-affectedpackage
twitter-bootstrap3fixed3.4.1+dfsg-5package
twitter-bootstrap3no-dsabookwormpackage

Примечания

  • https://www.herodevs.com/vulnerability-directory/cve-2025-1647

EPSS

Процентиль: 12%
0.00039
Низкий

Связанные уязвимости

CVSS3: 5.6
ubuntu
8 месяцев назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Bootstrap allows Cross-Site Scripting (XSS).This issue affects Bootstrap: from 3.4.1 before 4.0.0.

CVSS3: 5.6
redhat
8 месяцев назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Bootstrap allows Cross-Site Scripting (XSS).This issue affects Bootstrap: from 3.4.1 before 4.0.0.

CVSS3: 5.6
nvd
8 месяцев назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Bootstrap allows Cross-Site Scripting (XSS).This issue affects Bootstrap: from 3.4.1 before 4.0.0.

CVSS3: 5.6
github
8 месяцев назад

Bootstrap Vulnerable to Cross-Site Scripting in its Popover and Tooltip Components

EPSS

Процентиль: 12%
0.00039
Низкий