CVE-2022-25758
01.07.2022, 20:15
All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() function, due to the usage of insecure regex.Enginsight
Vendor | Product | Version |
---|---|---|
scss-tokenizer_project | scss-tokenizer | * |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References