Description
LibSass 3.6.1 has uncontrolled recursion in Sass::Eval::operator()(Sass::Binary_Expression*) in eval.cpp.
Remediation
References
https://github.com/sass/libsass/issues/3000
Related Vulnerabilities
CVE-2020-6428 Vulnerability in maven package org.webjars.npm:electron
CVE-2020-26302 Vulnerability in maven package org.webjars.npm:is_js
CVE-2019-1010091 Vulnerability in maven package org.webjars.npm:tinymce
CVE-2023-36470 Vulnerability in maven package org.xwiki.platform:xwiki-platform-icon-script
CVE-2022-40151 Vulnerability in maven package com.thoughtworks.xstream:xstream