CVE-2023-26364

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/11/2023
Last modified:
24/11/2023

Description

@adobe/css-tools version 4.3.0 and earlier are affected by an Improper Input Validation vulnerability that could result in a minor denial of service while attempting to parse CSS. Exploitation of this issue does not require user interaction or privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:adobe:css-tools:*:*:*:*:*:node.js:*:* 4.3.1 (excluding)