Vulnerabilities (CVE)

Filtered by vendor Sassdoc Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-57326 1 Sassdoc 1 Sassdoc-extras 2025-10-16 N/A 7.5 HIGH
A Prototype Pollution vulnerability in the byGroupAndType function of sassdoc-extras v2.5.1 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.