CVE & Exploit Intelligence Database

Updated 2h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,219 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,422 researchers
9 results Clear all
CVE-2025-1647 5.6 MEDIUM EPSS 0.00
NPM Bootstrap - XSS
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Bootstrap allows Cross-Site Scripting (XSS).This issue affects Bootstrap: from 3.4.1 before 4.0.0.
CWE-79 May 15, 2025
CVE-2024-6485 6.4 MEDIUM 1 PoC Analysis EPSS 0.00
Bootstrap - XSS
A security vulnerability has been discovered in bootstrap that could enable Cross-Site Scripting (XSS) attacks. The vulnerability is associated with the data-loading-text attribute within the button plugin. This vulnerability can be exploited by injecting malicious JavaScript code into the attribute, which would then be executed when the button's loading state is triggered.
CWE-79 Jul 11, 2024
CVE-2019-8331 6.1 MEDIUM 3 PoCs Analysis EPSS 0.02
Bootstrap < 3.4.1 - XSS
In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover data-template attribute.
CWE-79 Feb 20, 2019
CVE-2018-20677 6.1 MEDIUM EPSS 0.12
Bootstrap < 3.4.0 - XSS
In Bootstrap before 3.4.0, XSS is possible in the affix configuration target property.
CWE-79 Jan 09, 2019
CVE-2018-20676 6.1 MEDIUM EPSS 0.06
Bootstrap < 3.4.0 - XSS
In Bootstrap before 3.4.0, XSS is possible in the tooltip data-viewport attribute.
CWE-79 Jan 09, 2019
CVE-2016-10735 6.1 MEDIUM 1 PoC Analysis EPSS 0.06
Bootstrap < 3.4.0 - XSS
In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041.
CWE-79 Jan 09, 2019
CVE-2018-14042 6.1 MEDIUM 1 PoC Analysis EPSS 0.02
Bootstrap <4.1.2 - XSS
In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.
CWE-79 Jul 13, 2018
CVE-2018-14041 6.1 MEDIUM 1 PoC Analysis EPSS 0.08
Bootstrap <4.1.2 - XSS
In Bootstrap before 4.1.2, XSS is possible in the data-target property of scrollspy.
CWE-79 Jul 13, 2018
CVE-2018-14040 6.1 MEDIUM 2 PoCs Analysis EPSS 0.02
Bootstrap <4.1.2 - XSS
In Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute.
CWE-79 Jul 13, 2018