VYPR

Scss Tokenizer

by Scss Tokenizer Project

CVEs (1)

  • CVE-2022-25758MedJul 1, 2022
    risk 0.28cvss 5.3epss 0.02

    All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() function, due to the usage of insecure regex.