CVE-2024-6485: XSS in Bootstrap button component
Overview
- Severity
- Medium (CVSS 6.4)
- CVSS Vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:L/A:L/E:U
- Exploit Status
- Not Exploited
- Patch Tuesday
- 2024-Jul
- Released
- 2025-12-05
- Last Updated
- 2026-01-03
- EPSS Score
- 0.14% (percentile: 33.2%)
Detection & Weaponization (1 sources)
Maturity: Exploit
- GitHub PoC: 1 repositories
Affected Products (3)
Other
- 20124-17086
- 20776-17086
- 20697-17086
Revision History
- 2025-12-05: Information published.
- 2025-12-06: Information published.
- 2025-12-19: Information published.
- 2026-01-03: Information published.