Description
In Bootstrap before 3.4.0, XSS is possible in the tooltip data-viewport attribute.
Remediation
References
Related Vulnerabilities
Drupal Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2017-6381)
PostgreSQL Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2018-1053)
Drupal Core 7.x Arbitrary File Overwrite (7.0 - 7.77)
WordPress Plugin Indeed Job Importer Cross-Site Scripting (1.0.5)
OpenSSL Use of a Broken or Risky Cryptographic Algorithm Vulnerability (CVE-2018-0734)