← Back

Compile Sass

compile-sass

Vendor: Compile Sass Project • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Compile Sass Project
1Compile Sass
Nov 21, 2024
Feb 24, 2020
N/A· v4
8.2 HIGH· v3
8.5 HIGH· v2
compile-sass prior to 1.0.5 allows execution of arbritary commands. The function "setupCleanupOnExit(cssPath)" within "dist/index.js" is executed as part of the "rm" command without any sanitization.