cve
base
Search
Products
Trending
About
Docs
Pricing
Home
/
Products
/
sass-lang
/
Sass-Lang Sassc
Sass-Lang Sassc vulnerabilities
1 known vulnerability affecting
sass-lang/sassc
.
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH
1
Vulnerabilities
Page 1 of 1
CVE-2022-43357
HIGH
CVSS 7.5
v3.6.2
2023-08-22
CVE-2022-43357 [HIGH] CWE-787 CVE-2022-43357: Stack overflow vulnerability in ast_selectors.cpp in function Sass::CompoundSelector::has_real_paren Stack overflow vulnerability in ast_selectors.cpp in function Sass::CompoundSelector::has_real_parent_ref in libsass:3.6.5-8-g210218, which can be exploited by attackers to causea denial of service (DoS). Also affects the command line driver for libsass, sassc 3.6.2.
nvd