CVE-2022-25758

Publication date

2022-07-01 20:01:14

Family

snyk

State

PUBLISHED

Description

All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() function, due to the usage of insecure regex.