Denial of Service of regular expression in package @adobe/css-tools
CVE-2023-26364
5.3MEDIUM
What is CVE-2023-26364?
@adobe/css-tools version 4.3.0 and earlier are affected by an Improper Input Validation vulnerability that could result in a minor denial of service while attempting to parse CSS. Exploitation of this issue does not require user interaction or privileges.
Affected Version(s)
Not a product 0 <= 4.3.0