Bootstrap Getbootstrap Bootstrap

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Getbootstrap Bootstrap.

By the Year

In 2025 there have been 0 vulnerabilities in Getbootstrap Bootstrap. Last year, in 2024 Bootstrap had 1 security vulnerability published. Right now, Bootstrap is on track to have less security vulnerabilities in 2025 than it did last year.




Year Vulnerabilities Average Score
2025 0 0.00
2024 1 6.10
2023 0 0.00
2022 1 6.10
2021 0 0.00
2020 0 0.00
2019 4 6.10
2018 3 6.10

It may take a day or so for new Bootstrap vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Getbootstrap Bootstrap Security Vulnerabilities

A vulnerability has been identified in Bootstrap that exposes users to Cross-Site Scripting (XSS) attacks

CVE-2024-6484 6.1 - Medium - July 11, 2024

A vulnerability has been identified in Bootstrap that exposes users to Cross-Site Scripting (XSS) attacks. The issue is present in the carousel component, where the data-slide and data-slide-to attributes can be exploited through the href attribute of an <a> tag due to inadequate sanitization. This vulnerability could potentially enable attackers to execute arbitrary JavaScript within the victim's browser.

XSS

Bootstrap v3.1.11 and v3.3.7 was discovered to contain a cross-site scripting (XSS) vulnerability

CVE-2022-26624 6.1 - Medium - April 08, 2022

Bootstrap v3.1.11 and v3.3.7 was discovered to contain a cross-site scripting (XSS) vulnerability via the Title parameter in /vendor/views/add_product.php.

XSS

In Bootstrap before 3.4.1 and 4.3.x before 4.3.1

CVE-2019-8331 6.1 - Medium - February 20, 2019

In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover data-template attribute.

XSS

In Bootstrap before 3.4.0

CVE-2018-20676 6.1 - Medium - January 09, 2019

In Bootstrap before 3.4.0, XSS is possible in the tooltip data-viewport attribute.

XSS

In Bootstrap before 3.4.0

CVE-2018-20677 6.1 - Medium - January 09, 2019

In Bootstrap before 3.4.0, XSS is possible in the affix configuration target property.

XSS

In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2

CVE-2016-10735 6.1 - Medium - January 09, 2019

In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041.

XSS

In Bootstrap before 4.1.2

CVE-2018-14040 6.1 - Medium - July 13, 2018

In Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute.

XSS

In Bootstrap before 4.1.2

CVE-2018-14041 6.1 - Medium - July 13, 2018

In Bootstrap before 4.1.2, XSS is possible in the data-target property of scrollspy.

XSS

In Bootstrap before 4.1.2

CVE-2018-14042 6.1 - Medium - July 13, 2018

In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.

XSS

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Getbootstrap Bootstrap or by Getbootstrap? Click the Watch button to subscribe.

subscribe