« Back to list

Scss-tokenizer Project

Scss-tokenizer Project Scss-tokenizer: vulnerabilities and CVEs

Scss-tokenizer Project Scss-tokenizer has 1 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs1
Last 12 months0
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2022-25758High (7.5)2.1%—Jul 1, 2022
All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() function, due to the usage of insecure regex.