From 319b34d7c62f4740f9764913c24c6a6aa165d02b Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 1 Oct 2023 14:33:50 +0000 Subject: [PATCH] fix: packages/react-scripts/package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-POSTCSS-5926692 --- packages/react-scripts/package.json | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/packages/react-scripts/package.json b/packages/react-scripts/package.json index 43ea8b6aa08..cf41b15aa73 100644 --- a/packages/react-scripts/package.json +++ b/packages/react-scripts/package.json @@ -23,7 +23,7 @@ "dependencies": { "@babel/core": "7.0.0-beta.46", "@babel/runtime": "7.0.0-beta.46", - "autoprefixer": "7.2.5", + "autoprefixer": "10.0.0", "babel-core": "7.0.0-bridge.0", "babel-eslint": "8.2.2", "babel-jest": "22.4.1", @@ -32,7 +32,7 @@ "babel-preset-react-app": "^3.1.1", "case-sensitive-paths-webpack-plugin": "2.1.1", "chalk": "2.3.0", - "css-loader": "0.28.9", + "css-loader": "5.0.0", "dotenv": "5.0.0", "dotenv-expand": "4.2.0", "eslint": "4.15.0", @@ -52,8 +52,8 @@ "jest": "22.4.1", "loader-utils": "^1.1.0", "object-assign": "4.1.1", - "postcss-flexbugs-fixes": "3.2.0", - "postcss-loader": "2.0.10", + "postcss-flexbugs-fixes": "5.0.0", + "postcss-loader": "4.0.0", "promise": "8.0.1", "raf": "3.4.0", "react-dev-utils": "^5.0.0",