CVE-2022-25758
EUVD-2022-628401.07.2022, 20:15
All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() function, due to the usage of insecure regex.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| scss-tokenizer_project | scss-tokenizer | * |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References