sasstools / scss-tokenizer

A tokenzier for Sass' SCSS syntax
MIT License
24 stars 22 forks source link

Js scss-tokenizer is a 3th party library vulnerable in sonarqube #57

Open sasamaniegoQA opened 1 year ago

sasamaniegoQA commented 1 year ago

I'd analyze a project with sonarqube and dependency-check and the result was the library scss-tokenizer V 0.4.3 has a vulnerability. Will you release a new version without this vulnerability?

scss-tokenizer