GHSA-wxhq-pm8v-cw75
ADVISORY - githubSummary
Version of clean-css prior to 4.1.11 are vulnerable to Regular Expression Denial of Service (ReDoS). Untrusted input may cause catastrophic backtracking while matching regular expressions. This can cause the application to be unresponsive leading to Denial of Service.
Recommendation
Upgrade to version 4.1.11 or higher.
Common Weakness Enumeration (CWE)
ADVISORY - github
Inefficient Regular Expression Complexity
ADVISORY - gitlab
ADVISORY - gitlab
ADVISORY - gitlab
ADVISORY - gitlab
ADVISORY - gitlab
ADVISORY - gitlab
ADVISORY - gitlab
Sign in to Docker Scout
See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.
Sign in