NA

CVE-2023-48631

Published: 14/12/2023 Updated: 18/12/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

@adobe/css-tools versions 4.3.1 and previous versions are affected by an Improper Input Validation vulnerability that could result in a denial of service while attempting to parse CSS.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

adobe css-tools

Vendor Advisories

Description<!---->A Regular Expression Denial of Service (ReDoS) vulnerability was found in Adobe's css-tools when parsing CSS This issue occurs due to improper input validation and may allow an attacker to use a carefully crafted input string to cause a denial of service, especially when attempting to parse CSSA Regular Expression Denial of Serv ...