CVE-2021-33587
28.05.2021, 20:15
The css-what package 4.0.0 through 5.0.0 for Node.js does not ensure that attribute parsing has Linear Time Complexity relative to the size of the input.Enginsight
| Vendor | Product | Version |
|---|---|---|
| css-what_project | css-what | 4.0.0 |
| css-what_project | css-what | 5.0.0 |
| netapp | e-series_performance_analyzer | - |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| node-css-what |
|
References