{"source":1109533,"name":"bootstrap","dependency":"bootstrap","title":"Bootstrap Cross-Site Scripting (XSS) vulnerability for data-* attributes","url":"https://github.com/advisories/GHSA-vxmc-5x29-h64v","severity":"moderate","versions":["0.0.1","0.0.2","3.1.1","3.2.0","3.3.0","3.3.1","3.3.2","3.3.4","3.3.5","3.3.6","3.3.7","3.4.0","3.4.1","4.0.0-alpha.2","4.0.0-alpha.3","4.0.0-alpha.4","4.0.0-alpha.5","4.0.0-alpha.6","4.0.0-beta","4.0.0-beta.2","4.0.0-beta.3","4.0.0","4.1.0","4.1.1","4.1.2","4.1.3","4.2.1","4.3.0","4.3.1","4.4.0","4.4.1","4.5.0","4.5.1","4.5.2","4.5.3","4.6.0","4.6.1","4.6.2","5.0.0-alpha1","5.0.0-alpha2","5.0.0-alpha3","5.0.0-beta1","5.0.0-beta2","5.0.0-beta3","5.0.0","5.0.1","5.0.2","5.1.0","5.1.1","5.1.2","5.1.3","5.2.0-beta1","5.2.0","5.2.1","5.2.2","5.2.3","5.3.0-alpha1","5.3.0-alpha2","5.3.0-alpha3","5.3.0","5.3.1","5.3.2","5.3.3","5.3.4","5.3.5","5.3.6","5.3.7","5.3.8"],"vulnerableVersions":["3.1.1","3.2.0","3.3.0","3.3.1","3.3.2","3.3.4","3.3.5","3.3.6","3.3.7","3.4.0","3.4.1"],"cwe":["CWE-79"],"cvss":{"score":6.4,"vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:L/A:L"},"range":">=1.4.0 <=3.4.1","id":"khimdYcWLN85Qtu2vfVkJcHCi2LiL27uxEGf2/NWd3XOBbO7uAJd0SBwI438Ge7eCMPxWVJeZ2YLvsYRbSTcQA=="}