Description
@adobe/css-tools versions 4.3.1 and earlier are affected by an Improper Input Validation vulnerability that could result in a denial of service while attempting to parse CSS.
Remediation
References
https://github.com/adobe/css-tools/security/advisories/GHSA-prr3-c3m5-p7q2
Related Vulnerabilities
CVE-2017-4947 Vulnerability in maven package com.vmware.xenon:xenon-common
CVE-2020-28052 Vulnerability in maven package org.bouncycastle:bcprov-jdk15to18
CVE-2023-37478 Vulnerability in npm package @pnpm/linux-arm64
CVE-2018-11778 Vulnerability in maven package org.apache.ranger:ranger
CVE-2020-2218 Vulnerability in maven package org.jenkins-ci.plugins:hp-quality-center