Description
LibSass before 3.6.3 allows a heap-based buffer over-read in Sass::weaveParents in ast_sel_weave.cpp.
Remediation
References
https://github.com/sass/libsass/issues/2999
Related Vulnerabilities
CVE-2022-39312 Vulnerability in maven package io.dataease:dataease-plugin-common
CVE-2019-5447 Vulnerability in npm package http-file-server
CVE-2023-26152 Vulnerability in npm package static-server
CVE-2021-24033 Vulnerability in npm package react-dev-utils
CVE-2021-46361 Vulnerability in maven package info.magnolia:magnolia-core