Description
@adobe/css-tools versions 4.3.1 and earlier are affected by an Improper Input Validation vulnerability that could result in a denial of service while attempting to parse CSS.
Remediation
References
https://github.com/adobe/css-tools/security/advisories/GHSA-prr3-c3m5-p7q2
Related Vulnerabilities
CVE-2016-4000 Vulnerability in maven package org.python:jython-standalone
CVE-2013-4002 Vulnerability in maven package xerces:xercesimpl
CVE-2019-10201 Vulnerability in maven package org.keycloak:keycloak-services
CVE-2017-7957 Vulnerability in maven package org.jvnet.hudson:xstream
CVE-2022-37023 Vulnerability in maven package org.apache.geode:geode-core