Description
@adobe/css-tools version 4.3.0 and earlier are affected by an Improper Input Validation vulnerability that could result in a minor denial of service while attempting to parse CSS. Exploitation of this issue does not require user interaction or privileges.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2304 | @adobe/css-tools version 4.3.0 and earlier are affected by an Improper Input Validation vulnerability that could result in a minor denial of service while attempting to parse CSS. Exploitation of this issue does not require user interaction or privileges. |
Github GHSA |
GHSA-hpx4-r86g-5jrg | @adobe/css-tools Regular Expression Denial of Service (ReDOS) while Parsing CSS |
References
History
Thu, 13 Feb 2025 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift_data_foundation:4.14::el9 cpe:/a:redhat:openshift_data_foundation:4.15::el9 cpe:/a:redhat:openshift_data_foundation:4.16::el9 |
Thu, 31 Oct 2024 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat openshift Data Foundation
|
|
| CPEs | cpe:/a:redhat:openshift_data_foundation:4.17::el9 | |
| Vendors & Products |
Redhat openshift Data Foundation
|
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2024-08-29T14:12:36.686Z
Reserved: 2023-02-22T19:47:52.379Z
Link: CVE-2023-26364
Updated: 2024-08-02T11:46:24.568Z
Status : Modified
Published: 2023-11-17T14:15:21.083
Modified: 2024-11-21T07:51:12.257
Link: CVE-2023-26364
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA