Description
LibSass before 3.6.3 allows a heap-based buffer over-read in Sass::weaveParents in ast_sel_weave.cpp.
Remediation
References
https://github.com/sass/libsass/issues/2999
Related Vulnerabilities
CVE-2022-45210 Vulnerability in maven package org.jeecgframework.boot:jeecg-module-system
CVE-2022-44730 Vulnerability in maven package org.apache.xmlgraphics:batik-script
CVE-2021-44145 Vulnerability in maven package org.apache.nifi:nifi
CVE-2022-22880 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core