From ba42b7b6998b22805b640827ce5f657338305f0c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 1 Oct 2023 21:37:22 +0000 Subject: [PATCH] fix: packages/react-scripts/package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-POSTCSS-5926692 --- packages/react-scripts/package.json | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/packages/react-scripts/package.json b/packages/react-scripts/package.json index 123f966d03..356344fe28 100644 --- a/packages/react-scripts/package.json +++ b/packages/react-scripts/package.json @@ -21,7 +21,7 @@ "react-scripts": "./bin/react-scripts.js" }, "dependencies": { - "autoprefixer": "7.1.2", + "autoprefixer": "10.0.0", "babel-core": "6.25.0", "babel-eslint": "7.2.3", "babel-jest": "20.0.3", @@ -30,7 +30,7 @@ "babel-runtime": "6.26.0", "case-sensitive-paths-webpack-plugin": "2.1.1", "chalk": "1.1.3", - "css-loader": "0.28.4", + "css-loader": "5.0.0", "dotenv": "4.0.0", "eslint": "4.4.1", "eslint-config-react-app": "^2.0.1", @@ -45,8 +45,8 @@ "html-webpack-plugin": "2.29.0", "jest": "20.0.4", "object-assign": "4.1.1", - "postcss-flexbugs-fixes": "3.2.0", - "postcss-loader": "2.0.6", + "postcss-flexbugs-fixes": "5.0.0", + "postcss-loader": "4.0.0", "promise": "8.0.1", "react-dev-utils": "^4.1.0", "style-loader": "0.18.2",