Lucene search

K
cvelistMitreCVELIST:CVE-2019-20921
HistorySep 30, 2020 - 12:30 p.m.

CVE-2019-20921

2020-09-3012:30:36
mitre
www.cve.org
2

6.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

49.9%

bootstrap-select before 1.13.6 allows Cross-Site Scripting (XSS). It does not escape title values in OPTION elements. This may allow attackers to execute arbitrary JavaScript in a victim’s browser.

6.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

49.9%