From 1683f8bdb911c805d8957ed38b6c8cd4a15c5584 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 1 Oct 2023 21:39:02 +0000 Subject: [PATCH] fix: packages/react-scripts/package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-POSTCSS-5926692 --- packages/react-scripts/package.json | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/packages/react-scripts/package.json b/packages/react-scripts/package.json index 46e9a00a020..9f31fa3b41b 100644 --- a/packages/react-scripts/package.json +++ b/packages/react-scripts/package.json @@ -23,7 +23,7 @@ "dependencies": { "@babel/core": "7.0.0-beta.38", "@babel/runtime": "7.0.0-beta.38", - "autoprefixer": "7.2.5", + "autoprefixer": "10.0.0", "babel-core": "7.0.0-bridge.0", "babel-eslint": "8.2.1", "babel-jest": "22.1.0", @@ -32,7 +32,7 @@ "babel-preset-react-app": "^3.1.1", "case-sensitive-paths-webpack-plugin": "2.1.1", "chalk": "2.3.0", - "css-loader": "0.28.9", + "css-loader": "5.0.0", "dotenv": "5.0.0", "dotenv-expand": "4.2.0", "eslint": "4.15.0", @@ -51,8 +51,8 @@ "identity-obj-proxy": "3.0.0", "jest": "22.1.2", "object-assign": "4.1.1", - "postcss-flexbugs-fixes": "3.2.0", - "postcss-loader": "2.0.10", + "postcss-flexbugs-fixes": "5.0.0", + "postcss-loader": "4.0.0", "promise": "8.0.1", "raf": "3.4.0", "react-dev-utils": "^5.0.0",