Vulnerabilities > Sass Lang > Libsass > High

DATE CVE VULNERABILITY TITLE RISK
2023-08-22 CVE-2022-26592 Out-of-bounds Write vulnerability in Sass-Lang Libsass 3.6.5
Stack Overflow vulnerability in libsass 3.6.5 via the CompoundSelector::has_real_parent_ref function.
network
low complexity
sass-lang CWE-787
8.8
2023-08-22 CVE-2022-43357 Out-of-bounds Write vulnerability in Sass-Lang Libsass and Sassc
Stack overflow vulnerability in ast_selectors.cpp in function Sass::CompoundSelector::has_real_parent_ref in libsass:3.6.5-8-g210218, which can be exploited by attackers to causea denial of service (DoS).
network
low complexity
sass-lang CWE-787
7.5
2023-08-22 CVE-2022-43358 Out-of-bounds Write vulnerability in Sass-Lang Libsass 3.6.58G210218
Stack overflow vulnerability in ast_selectors.cpp: in function Sass::ComplexSelector::has_placeholder in libsass:3.6.5-8-g210218, which can be exploited by attackers to cause a denial of service (DoS).
network
low complexity
sass-lang CWE-787
7.5
2018-12-03 CVE-2018-19827 Use After Free vulnerability in Sass-Lang Libsass 3.5.5
In LibSass 3.5.5, a use-after-free vulnerability exists in the SharedPtr class in SharedPtr.cpp (or SharedPtr.hpp) that may cause a denial of service (application crash) or possibly have unspecified other impact.
network
low complexity
sass-lang CWE-416
8.8
2018-06-04 CVE-2018-11698 Out-of-bounds Read vulnerability in Sass-Lang Libsass
An issue was discovered in LibSass through 3.5.4.
network
low complexity
sass-lang CWE-125
8.1
2018-06-04 CVE-2018-11697 Out-of-bounds Read vulnerability in Sass-Lang Libsass
An issue was discovered in LibSass through 3.5.4.
network
low complexity
sass-lang CWE-125
8.1
2018-06-04 CVE-2018-11696 NULL Pointer Dereference vulnerability in Sass-Lang Libsass
An issue was discovered in LibSass through 3.5.4.
network
low complexity
sass-lang CWE-476
8.8
2018-06-04 CVE-2018-11695 NULL Pointer Dereference vulnerability in Sass-Lang Libsass
An issue was discovered in LibSass <3.5.3.
network
low complexity
sass-lang CWE-476
8.8
2018-06-04 CVE-2018-11694 NULL Pointer Dereference vulnerability in Sass-Lang Libsass
An issue was discovered in LibSass through 3.5.4.
network
low complexity
sass-lang CWE-476
8.8
2018-06-04 CVE-2018-11693 Out-of-bounds Read vulnerability in Sass-Lang Libsass
An issue was discovered in LibSass through 3.5.4.
network
low complexity
sass-lang CWE-125
8.1