PostCSS Selector Parser 是一个 CSS 选择器解析器,它与 PostCSS 集成,但不依赖 PostCSS。在版本 7.1.6 之前,src/parser.js 中的 splitWord() 函数可能将一个平面选择器作为单个词元接收,该词元包含多个类(class)或 ID 索引,因为句点(.)和哈希(#)字符未被用作词元中的单词分隔符。uniqs() 去重函数以及按索引进行的类和 ID 成员资格检查会反复扫描类和 ID 索引数组,同时另一个用于过滤 Sass 插值的步骤也执行重复的线性扫描。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| postcss | postcss-selector-parser | < 7.1.6 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| postcss | postcss-selector-parser | < 7.1.6 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet