Описание
Rejected reason: This was not a security issue in Bootstrap. Bootstrap’s JavaScript is not intended to sanitize unsafe or intentionally dangerous HTML. As such, the reported behavior fell outside the scope of Bootstrap’s security model, and the associated CVE has been rescinded.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | debian: Only affects 4.x |
| esm-apps/bionic | not-affected | debian: Only affects 4.x |
| esm-apps/focal | not-affected | debian: Only affects 4.x |
| esm-apps/jammy | not-affected | debian: Only affects 4.x |
| esm-apps/noble | not-affected | debian: Only affects 4.x |
| esm-apps/xenial | not-affected | debian: Only affects 4.x |
| focal | ignored | end of standard support, was needs-triage |
| jammy | not-affected | debian: Only affects 4.x |
| noble | not-affected | debian: Only affects 4.x |
| oracular | not-affected | debian: Only affects 4.x |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 4.6.2+dfsg-1 |
| esm-apps/focal | released | 4.4.1+dfsg1-2ubuntu0.1~esm1 |
| esm-apps/jammy | released | 4.6.0+dfsg1-4ubuntu0.1~esm1 |
| esm-apps/noble | released | 4.6.1+dfsg1-4+deb12u1build0.24.04.1 |
| focal | ignored | end of standard support, was needs-triage |
| jammy | ignored | cve is rejected |
| noble | released | 4.6.1+dfsg1-4+deb12u1build0.24.04.1 |
| oracular | released | 4.6.1+dfsg1-4+deb12u1build0.24.10.1 |
| plucky | not-affected | 4.6.1+dfsg1-5 |
| upstream | needs-triage |
Показывать по
Связанные уязвимости
Rejected reason: This was not a security issue in Bootstrap. Bootstrap’s JavaScript is not intended to sanitize unsafe or intentionally dangerous HTML. As such, the reported behavior fell outside the scope of Bootstrap’s security model, and the associated CVE has been rescinded.
Rejected reason: This was not a security issue in Bootstrap. Bootstrap’s JavaScript is not intended to sanitize unsafe or intentionally dangerous HTML. As such, the reported behavior fell outside the scope of Bootstrap’s security model, and the associated CVE has been rescinded.
Withdrawn Advisory: Bootstrap Cross-Site Scripting (XSS) vulnerability