Vulnerabilities
Summary — last 7 days
New vulnerabilities3,082▲ 502 vs. last week
Critical / high1,460▲ 59 vs. last week
New active exploitation (KEV)5▼ 1 vs. last week
Unscored (no CVSS)238▲ 224 vs. last week
1 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | High (7.5) | 2.1% | — | Scss-tokenizer Project Scss-tokenizer | 7/1/2022 | 6/17/2026 | All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() function, due to the usage of insecure regex. |