Description
LibSass 3.6.1 has uncontrolled recursion in Sass::Eval::operator()(Sass::Binary_Expression*) in eval.cpp.
Remediation
References
https://github.com/sass/libsass/issues/3000
Related Vulnerabilities
CVE-2020-12265 Vulnerability in maven package org.webjars.npm:decompress-tar
CVE-2020-26296 Vulnerability in maven package org.webjars.bowergithub.vega:vega
CVE-2020-8158 Vulnerability in npm package typeorm
CVE-2022-3224 Vulnerability in npm package parse-url
CVE-2018-14042 Vulnerability in maven package org.webjars.bower:bootstrap-sass