Loading HuntDB...

GHSA-prr3-c3m5-p7q2

GitHub Security Advisory

@adobe/css-tools Improper Input Validation and Inefficient Regular Expression Complexity

✓ GitHub Reviewed MODERATE Has CVE

Advisory Details

### Impact
@adobe/css-tools version 4.3.1 and earlier are affected by an Improper Input Validation vulnerability that could result in a denial of service while attempting to parse CSS.

### Patches
The issue has been resolved in 4.3.2.

### Workarounds
None

### References
N/A

Affected Packages

npm @adobe/css-tools
Affected versions: 0 (fixed in 4.3.2)

Related CVEs

Key Information

GHSA ID
GHSA-prr3-c3m5-p7q2
Published
November 30, 2023 7:51 PM
Last Modified
December 14, 2023 10:02 PM
CVSS Score
5.0 /10
Primary Ecosystem
npm
Primary Package
@adobe/css-tools
GitHub Reviewed
✓ Yes

Dataset

Last updated: November 25, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.