From 6fcd0a8fce58f6ea13766401730a38e4df63e00d Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 3 Sep 2021 23:16:35 +0000 Subject: [PATCH] fix: packages/react-scripts/package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-CSSWHAT-1298035 - https://snyk.io/vuln/SNYK-JS-POSTCSS-1255640 --- packages/react-scripts/package.json | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/packages/react-scripts/package.json b/packages/react-scripts/package.json index 7170e4ff98b..ba6a2844495 100644 --- a/packages/react-scripts/package.json +++ b/packages/react-scripts/package.json @@ -22,7 +22,7 @@ }, "dependencies": { "@babel/core": "7.1.0", - "@svgr/webpack": "2.4.1", + "@svgr/webpack": "4.0.0", "babel-core": "7.0.0-bridge.0", "babel-eslint": "9.0.0", "babel-jest": "23.6.0", @@ -32,7 +32,7 @@ "bfj": "6.1.1", "case-sensitive-paths-webpack-plugin": "2.1.2", "chalk": "2.4.1", - "css-loader": "1.0.0", + "css-loader": "2.0.0", "dotenv": "6.0.0", "dotenv-expand": "4.2.0", "eslint": "5.6.0", @@ -48,7 +48,7 @@ "identity-obj-proxy": "3.0.0", "jest": "23.6.0", "mini-css-extract-plugin": "0.4.3", - "optimize-css-assets-webpack-plugin": "5.0.1", + "optimize-css-assets-webpack-plugin": "5.0.5", "postcss-flexbugs-fixes": "4.1.0", "postcss-loader": "3.0.0", "postcss-preset-env": "6.0.6",