From cec6c73b28e0eb8e2e1db3ad7187dd92997d9ac7 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 1 Oct 2023 18:47:48 +0000 Subject: [PATCH] fix: packages/app/package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-POSTCSS-5926692 --- packages/app/package.json | 18 +++++++++--------- 1 file changed, 9 insertions(+), 9 deletions(-) diff --git a/packages/app/package.json b/packages/app/package.json index cd0e9b36c54..a59c413fdc5 100644 --- a/packages/app/package.json +++ b/packages/app/package.json @@ -140,7 +140,7 @@ "gsap": "^1.20.3", "gulp": "^3.9.1", "gulp-filter": "^5.0.0", - "gulp-postcss": "^6.4.0", + "gulp-postcss": "^9.0.0", "gulp-rev": "^7.1.2", "hash-sum": "^1.0.2", "http-browserify": "^1.7.0", @@ -177,7 +177,7 @@ "overmind-react": "^28.0.0-1624124645626", "path-browserify": "1.0.1", "phoenix": "^1.5.3", - "postcss": "^7.0.26", + "postcss": "^8.4.31", "postcss-selector-parser": "^2.2.3", "posthtml": "^0.11.3", "posthtml-parser": "^0.4.1", @@ -316,7 +316,7 @@ "cors": "^2.8.4", "cross-env": "^5.0.5", "cross-spawn": "^5.0.1", - "css-loader": "^3.2.0", + "css-loader": "^5.0.0", "detect-port": "^1.1.1", "express": "^4.15.3", "file-loader": "^1.1.11", @@ -339,18 +339,18 @@ "opn": "4.0.2", "path-exists": "3.0.0", "path-override-webpack-plugin": "^0.1.2", - "postcss-flexbugs-fixes": "^4.1.0", - "postcss-import": "^12.0.1", - "postcss-loader": "3.0.0", - "postcss-normalize": "^8.0.1", - "postcss-preset-env": "^6.7.0", + "postcss-flexbugs-fixes": "^5.0.0", + "postcss-import": "^13.0.0", + "postcss-loader": "4.0.0", + "postcss-normalize": "^10.0.0", + "postcss-preset-env": "^9.1.4", "preval.macro": "^1.0.1", "promise": "7.1.1", "raw-loader": "^0.5.1", "react-hot-loader": "^4.12.20", "react-test-renderer": "16", "recursive-readdir": "^2.2.1", - "resolve-url-loader": "^3.1.0", + "resolve-url-loader": "^5.0.0", "rimraf": "^2.6.1", "sass-loader": "^7.1.0", "script-ext-html-webpack-plugin": "^2.1.4",