@adobe/css-tools Improper Input Validation and Inefficient Regular Expression Complexity
Description
Published to the GitHub Advisory Database
Nov 30, 2023
Reviewed
Nov 30, 2023
Published by the National Vulnerability Database
Dec 14, 2023
Last updated
Dec 14, 2023
Impact
@adobe/css-tools version 4.3.1 and earlier are affected by an Improper Input Validation vulnerability that could result in a denial of service while attempting to parse CSS.
Patches
The issue has been resolved in 4.3.2.
Workarounds
None
References
N/A
References