Description
In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.
Remediation
References
Related Vulnerabilities
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-5317)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-3181)
Moodle Other Vulnerability (CVE-2019-10188)
WordPress Plugin WordPress Affiliates-SliceWP Cross-Site Scripting (1.0.45)
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-13363)