Microsoft Security Response Center guidance
CBL-Mariner Releases
Vendor-listed releases
- 3.1.1-19
Vulnerability intelligence
CVE-2024-6484. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
CBL-Mariner Releases
Rejected reason: This was not a security issue in Bootstrap. Bootstrap’s JavaScript is not intended to sanitize unsafe or intentionally dangerous HTML. As such, the reported behavior fell outside the scope of Bootstrap’s security model, and the associated CVE has been rescinded.