Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-22858 | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. |
Sat, 02 Aug 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | ||
| Metrics |
cvssV2_0
|
cvssV3_1
|
Sat, 02 Aug 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | prettier parser-postcss.js parseNestedCSS redos | prettier: prettier parseNestedCSS ReDoS |
| Metrics |
ssvc
|
Sat, 02 Aug 2025 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in prettier up to 3.6.2. It has been declared as problematic. Affected by this vulnerability is the function parseNestedCSS of the file src/language-css/parser-postcss.js. The manipulation of the argument node leads to inefficient regular expression complexity. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. |
| Metrics |
cvssV3_0
|
cvssV2_0
|
Thu, 31 Jul 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:prettier:prettier:*:*:*:*:*:*:*:* |
Tue, 29 Jul 2025 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Tue, 29 Jul 2025 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Prettier
Prettier prettier |
|
| Vendors & Products |
Prettier
Prettier prettier |
Mon, 28 Jul 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 28 Jul 2025 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in prettier up to 3.6.2. It has been declared as problematic. Affected by this vulnerability is the function parseNestedCSS of the file src/language-css/parser-postcss.js. The manipulation of the argument node leads to inefficient regular expression complexity. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | prettier parser-postcss.js parseNestedCSS redos | |
| Weaknesses | CWE-1333 CWE-400 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: REJECTED
Assigner: VulDB
Published:
Updated: 2025-08-02T08:42:19.309Z
Reserved: 2025-07-26T16:29:27.258Z
Link: CVE-2025-8263
Updated:
Status : Rejected
Published: 2025-07-28T08:15:22.520
Modified: 2025-08-02T09:15:28.097
Link: CVE-2025-8263
OpenCVE Enrichment
Updated: 2025-07-28T15:24:23Z
EUVD