Show filters
45 Total Results
Displaying 31-40 of 45
Sort by:
Attacker Value
Unknown
CVE-2020-25091
Disclosure Date: September 03, 2020 (last updated February 22, 2025)
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in application/modules/vendor/views/add_product.php.
0
Attacker Value
Unknown
CVE-2020-25089
Disclosure Date: September 03, 2020 (last updated February 22, 2025)
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in application/modules/admin/views/ecommerce/discounts.php.
0
Attacker Value
Unknown
CVE-2020-25090
Disclosure Date: September 03, 2020 (last updated February 22, 2025)
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in application/modules/admin/views/ecommerce/publish.php.
0
Attacker Value
Unknown
CVE-2020-25092
Disclosure Date: September 03, 2020 (last updated February 22, 2025)
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in _parts/header.php, within application/views/templates/clothesshop, application/views/templates/greenlabel, and application/views/templates/redlabel.
0
Attacker Value
Unknown
CVE-2020-25088
Disclosure Date: September 03, 2020 (last updated February 22, 2025)
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in application/modules/admin/views/blog/blogpublish.php.
0
Attacker Value
Unknown
CVE-2019-10215
Disclosure Date: October 08, 2019 (last updated November 27, 2024)
Bootstrap-3-Typeahead after version 4.0.2 is vulnerable to a cross-site scripting flaw in the highlighter() function. An attacker could exploit this via user interaction to execute code in the user's browser.
0
Attacker Value
Unknown
CVE-2019-15836
Disclosure Date: August 30, 2019 (last updated November 27, 2024)
The wp-ultimate-recipe plugin before 3.12.7 for WordPress has stored XSS.
0
Attacker Value
Unknown
CVE-2019-10842
Disclosure Date: April 04, 2019 (last updated November 27, 2024)
Arbitrary code execution (via backdoor code) was discovered in bootstrap-sass 3.2.0.3, when downloaded from rubygems.org. An unauthenticated attacker can craft the ___cfduid cookie value with base64 arbitrary code to be executed via eval(), which can be leveraged to execute arbitrary code on the target system. Note that there are three underscore characters in the cookie name. This is unrelated to the __cfduid cookie that is legitimately used by Cloudflare.
0
Attacker Value
Unknown
CVE-2019-8331
Disclosure Date: February 20, 2019 (last updated November 08, 2023)
In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover data-template attribute.
0
Attacker Value
Unknown
CVE-2016-10735
Disclosure Date: January 09, 2019 (last updated November 27, 2024)
In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041.
0