Scss-tokenizer Project
Scss-tokenizer Project Scss-tokenizer: vulnerabilities and CVEs
Scss-tokenizer Project Scss-tokenizer has 1 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs1
Last 12 months0
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-25758 | High (7.5) | 2.1% | — | Jul 1, 2022 | All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() function, due to the usage of insecure regex. |