Skip to content
RequestGuard Vulnerabilities
Pricing

twbs/bootstrap

The most popular front-end framework for developing responsive, mobile first projects on the web.

Composer latest 5.3.8 MIT

Evidence path

Version, exploitation, severity

RequestGuard keeps these facts separate. A KEV match refers to a CVE, while OSV supplies the package and version match.

1

Latest version

5.3.8

No matching published advisory returned

2

Known exploitation

No KEV match

Checked by exact CVE identifier

3

Highest advisory severity

Moderate

7 active advisories

Check an exact version

The registry confirms the version, then OSV checks advisories for that exact value.

Published records

Advisories

7

Bootstrap vulnerable to Cross-Site Scripting (XSS)

Affected range

ECOSYSTEM: introduced 2.3.0; fixed 3.4.0ECOSYSTEM: introduced 4.0.0; fixed 4.1.2>=4.0.0,<4.1.2|>=2.3.0,<3.4.0

Fixed versions: 3.4.0, 4.1.2

Bootstrap Vulnerable to Cross-Site Scripting

Affected range

ECOSYSTEM: introduced 3.0.0; fixed 3.4.1ECOSYSTEM: introduced 4.0.0; fixed 4.3.1>=4.0.0,<4.3.1|>=3.0.0,<3.4.1

Fixed versions: 3.4.1, 4.3.1

Bootstrap Cross-site Scripting vulnerability

Affected range

ECOSYSTEM: introduced 2.0.4; fixed 3.4.0ECOSYSTEM: introduced 4.0.0-beta; fixed 4.0.0-beta.2>=4.0.0-beta,<4.0.0-beta.2|>=2.0.4,<3.4.0

Fixed versions: 3.4.0, 4.0.0-beta.2

Bootstrap Cross-site Scripting vulnerability

Affected range

ECOSYSTEM: introduced 4.0.0; fixed 4.1.2ECOSYSTEM: introduced 2.3.0; fixed 3.4.0>=2.3.0,<3.4.0|>=4.0.0,<4.1.2

Fixed versions: 4.1.2, 3.4.0