Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4918
HistoryAug 18, 2017 - 10:09 a.m.

Cross-site Scripting (XSS)

2017-08-1810:09:01
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.001 Low

EPSS

Percentile

49.9%

bootstrap-select is vulnerable to cross-site scripting (XSS) attacks. The library does not sanitize the titles of the options, allowing a malicious user to inject and execute arbitrary javascript.

0.001 Low

EPSS

Percentile

49.9%