A vulnerability, which was classified as critical, has been found in PostCSS up to 8.5.11. This affects the function process of the component PreviousMap. Performing a manipulation results in path traversal.

This vulnerability is reported as CVE-2026-45623. The attack is possible to be carried out remotely. No exploit exists.

It is advisable to upgrade the affected component.