GHSA-ph58-4vrj-w6hr moderate
bootstrap Cross-site Scripting vulnerability
Affected range
SEMVER: introduced 0; fixed 3.4.0Fixed versions: 3.4.0
bootstrap-sass is a Sass-powered version of Bootstrap 3, ready to drop right into your Sass powered applications.
Evidence path
RequestGuard keeps these facts separate. A KEV match refers to a CVE, while OSV supplies the package and version match.
Latest version
3.4.3
No matching published advisory returned
Known exploitation
No KEV match
Checked by exact CVE identifier
Highest advisory severity
Moderate
5 active advisories
The registry confirms the version, then OSV checks advisories for that exact value.
Published records
Affected range
SEMVER: introduced 0; fixed 3.4.0Fixed versions: 3.4.0
Affected range
SEMVER: introduced 3.0.0; fixed 3.4.1Fixed versions: 3.4.1
Affected range
SEMVER: introduced 2.0.4; fixed 3.4.0Fixed versions: 3.4.0
Affected range
SEMVER: introduced 0; fixed 3.4.0Fixed versions: 3.4.0
Affected range
SEMVER: introduced 2.0.4; fixed 3.4.0Fixed versions: 3.4.0