CVE-2022-25758
Published Jul 1, 2022All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() function, due to the usage of insecure regex.
Vendor/product archive
1 CVEs tagged to scss-tokenizer_project / scss-tokenizer — 0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() function, due to the usage of insecure regex.