Vulnerabilities

Summary — last 7 days

New vulnerabilities3,082▲ 502 vs. last week
Critical / high1,460▲ 59 vs. last week
New active exploitation (KEV)5▼ 1 vs. last week
Unscored (no CVSS)238▲ 224 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedHigh (7.5)2.1%—Scss-tokenizer Project Scss-tokenizer7/1/20226/17/2026
All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() function, due to the usage of insecure regex.
Orbitaley — Vulnerabilities