Description
LibSass before 3.6.3 allows a NULL pointer dereference in Sass::Parser::parseCompoundSelector in parser_selectors.cpp.
Remediation
References
https://github.com/sass/libsass/issues/3001
Related Vulnerabilities
CVE-2021-32640 Vulnerability in npm package ws
CVE-2023-36478 Vulnerability in maven package org.eclipse.jetty.http2:http2-hpack
CVE-2021-3664 Vulnerability in npm package url-parse
CVE-2023-31826 Vulnerability in maven package org.skyscreamer:nevado-jms
CVE-2018-20094 Vulnerability in maven package com.xuxueli:xxl-conf