Description
LibSass before 3.6.3 allows a NULL pointer dereference in Sass::Parser::parseCompoundSelector in parser_selectors.cpp.
Remediation
References
https://github.com/sass/libsass/issues/3001
Related Vulnerabilities
CVE-2021-23440 Vulnerability in npm package set-value
CVE-2022-24615 Vulnerability in maven package net.lingala.zip4j:zip4j
CVE-2020-7691 Vulnerability in maven package org.webjars.bower:jspdf
CVE-2021-37578 Vulnerability in maven package org.apache.juddi:juddi-core
CVE-2022-31129 Vulnerability in maven package org.webjars.bowergithub.moment:moment