OsVault/npm/postcss
npm

postcss

23 known vulnerabilities · 0 critical · 0 high

CVE-2021-23382MEDIUM

Regular Expression Denial of Service in postcss

Published Jan 7, 2022
CVE-2021-23368MEDIUM

Regular Expression Denial of Service in postcss

Published May 10, 2021
GHSA-qx2v-qp2m-jg93

PostCSS has XSS via Unescaped </style> in its CSS Stringify Output

Published Apr 24, 2026
MAL-2023-690

Malicious code in postcss-file-match (npm)

Published Jan 30, 2023
MAL-2022-5426

Malicious code in postcssfvlgexugsfixes (npm)

Published Aug 19, 2022
MAL-2025-66552

Malicious code in vite-plugin-postcss-tools (npm)

Published Nov 11, 2025
MAL-2025-5200

Malicious code in postcss-layout-grid (npm)

Published Jun 20, 2025
MAL-2025-5201

Malicious code in postcss-query-splitter (npm)

Published Jun 20, 2025
MAL-2025-5202

Malicious code in postcss-theme-vars (npm)

Published Jun 20, 2025
MAL-2025-5967

Malicious code in vite-postcss-tools (npm)

Published Jul 15, 2025
MAL-2025-6346

Malicious code in vite-postcss-bootstrap (npm)

Published Jul 29, 2025
MAL-2022-5427

Malicious code in postcssmipot (npm)

Published Aug 19, 2022
MAL-2022-5428

Malicious code in postcsssafeparsear (npm)

Published Aug 19, 2022
MAL-2025-4636

Malicious code in @balajih4kr/postcss (npm)

Published Jun 4, 2025
MAL-2022-7294

Malicious code in xpostcss-loadsr (npm)

Published Aug 19, 2022
MAL-2025-5199

Malicious code in postcss-color-fn (npm)

Published Jun 20, 2025
MAL-2025-6379

Malicious code in vite-postcss-nested (npm)

Published Jul 30, 2025
MAL-2026-1822

Malicious code in postcss-hotfix (npm)

Published Mar 18, 2026
MAL-2025-4014

Malicious code in postcss-optimizer (npm)

Published May 19, 2025
MAL-2022-5423

Malicious code in postcss-fleexbugs-fixs (npm)

Published Aug 19, 2022
MAL-2022-5424

Malicious code in postcss-lazy-rules (npm)

Published Jun 20, 2022
MAL-2022-5425

Malicious code in postcsscksnext (npm)

Published Aug 19, 2022
MAL-2025-5166

Malicious code in postcss-preloader (npm)

Published Jun 18, 2025
Check your entire dependency tree at onceRun dependency scan →