Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-43357

Stack overflow vulnerability in ast_selectors.cpp in function Sass::CompoundSelector::has_real_parent_ref in libsass:3.6.5-8-g210218, which can be exploited by attackers to causea denial of service (DoS). Also affects the command line driver for libsass, sassc 3.6.2.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.5%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-43357
  • Sass-Lang » Libsass » Version: 3.6.5-8-g210218
    cpe:2.3:a:sass-lang:libsass:3.6.5-8-g210218
  • Sass-Lang » Sassc » Version: 3.6.2
    cpe:2.3:a:sass-lang:sassc:3.6.2


Contact Us

Shodan ® - All rights reserved