-
Notifications
You must be signed in to change notification settings - Fork 5
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update dependency autoprefixer to v10.4.20 #18
base: main
Are you sure you want to change the base?
Conversation
0f98168
to
0ec2551
Compare
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Change details
-
Error ID Change Path Resource BC_VUL_2 Added /package-lock.json Vulnerable package-lock.json
package-lock.json
Outdated
@@ -11,7 +11,7 @@ | |||
"devDependencies": { | |||
"@tailwindcss/forms": "0.5.2", | |||
"alpinejs": "3.10.2", | |||
"autoprefixer": "10.4.7", | |||
"autoprefixer": "10.4.13", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
terser / package-lock.json
🎉 All vulnerabilities were fixed
Total vulnerabilities: 1
Critical: 0 | High: 1 | Medium: 0 | Low: 0 |
---|
Vulnerability ID | Severity | CVSS | Fixed in | Status |
---|---|---|---|---|
CVE-2022-25858 | 7.5 | 5.14.2 |
Fixed |
package-lock.json
Outdated
@@ -11,7 +11,7 @@ | |||
"devDependencies": { | |||
"@tailwindcss/forms": "0.5.2", | |||
"alpinejs": "3.10.2", | |||
"autoprefixer": "10.4.7", | |||
"autoprefixer": "10.4.13", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
terser 4.8.0 / package-lock.json
Total vulnerabilities: 1
Critical: 0 | High: 1 | Medium: 0 | Low: 0 |
---|
Vulnerability ID | Severity | CVSS | Fixed in | Status |
---|---|---|---|---|
CVE-2022-25858 | HIGH | 7.5 | 4.8.1 | Open |
package-lock.json
Outdated
@@ -11,7 +11,7 @@ | |||
"devDependencies": { | |||
"@tailwindcss/forms": "0.5.2", | |||
"alpinejs": "3.10.2", | |||
"autoprefixer": "10.4.7", | |||
"autoprefixer": "10.4.13", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
clean-css / package-lock.json
🎉 All vulnerabilities were fixed
Total vulnerabilities: 1
Critical: 0 | High: 0 | Medium: 1 | Low: 0 |
---|
Vulnerability ID | Severity | CVSS | Fixed in | Status |
---|---|---|---|---|
PRISMA-2021-0147 | 5.9 | 5.2.2 |
Fixed |
package-lock.json
Outdated
@@ -11,7 +11,7 @@ | |||
"devDependencies": { | |||
"@tailwindcss/forms": "0.5.2", | |||
"alpinejs": "3.10.2", | |||
"autoprefixer": "10.4.7", | |||
"autoprefixer": "10.4.13", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
loader-utils / package-lock.json
🎉 All vulnerabilities were fixed
Total vulnerabilities: 3
Critical: 1 | High: 2 | Medium: 0 | Low: 0 |
---|
Vulnerability ID | Severity | CVSS | Fixed in | Status |
---|---|---|---|---|
CVE-2022-37601 | 9 | 1.4.1 |
Fixed | |
CVE-2022-37603 | 7 | 1.4.2 |
Fixed | |
CVE-2022-37599 | 7 | 1.4.2 |
Fixed |
package-lock.json
Outdated
@@ -11,7 +11,7 @@ | |||
"devDependencies": { | |||
"@tailwindcss/forms": "0.5.2", | |||
"alpinejs": "3.10.2", | |||
"autoprefixer": "10.4.7", | |||
"autoprefixer": "10.4.13", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
loader-utils 2.0.2 / package-lock.json
Total vulnerabilities: 3
Critical: 1 | High: 2 | Medium: 0 | Low: 0 |
---|
Vulnerability ID | Severity | CVSS | Fixed in | Status |
---|---|---|---|---|
CVE-2022-37601 | CRITICAL | 9 | 2.0.3 | Open |
CVE-2022-37599 | HIGH | 7 | 2.0.4 | Open |
CVE-2022-37603 | HIGH | 7 | 2.0.4 | Open |
package-lock.json
Outdated
@@ -11,7 +11,7 @@ | |||
"devDependencies": { | |||
"@tailwindcss/forms": "0.5.2", | |||
"alpinejs": "3.10.2", | |||
"autoprefixer": "10.4.7", | |||
"autoprefixer": "10.4.13", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
file-type / package-lock.json
🎉 All vulnerabilities were fixed
Total vulnerabilities: 1
Critical: 0 | High: 0 | Medium: 1 | Low: 0 |
---|
Vulnerability ID | Severity | CVSS | Fixed in | Status |
---|---|---|---|---|
CVE-2022-36313 | 5.5 | 16.5.4 |
Fixed |
0ec2551
to
ae8423e
Compare
ae8423e
to
29f099b
Compare
29f099b
to
026d552
Compare
026d552
to
03a5824
Compare
03a5824
to
72e7388
Compare
72e7388
to
744268b
Compare
744268b
to
c88297b
Compare
c88297b
to
d8b89d9
Compare
This PR contains the following updates:
10.4.7
->10.4.20
Release Notes
postcss/autoprefixer (autoprefixer)
v10.4.20
Compare Source
fit-content
prefix for Firefox.v10.4.19
Compare Source
end value has mixed support, consider using flex-end
warningsince
end
/start
now have good support.v10.4.18
Compare Source
-webkit-box-orient
on-webkit-line-clamp
(@Goodwine).v10.4.17
Compare Source
user-select: contain
prefixes.v10.4.16
Compare Source
v10.4.15
Compare Source
::backdrop
prefixes (by 一丝).v10.4.14
Compare Source
v10.4.13
Compare Source
v10.4.12
Compare Source
v10.4.11
Compare Source
text-decoration
prefixes by moving to MDN data (by Romain Menke).v10.4.10
Compare Source
unicode-bidi
prefixes by moving to MDN data.v10.4.9
Compare Source
css-unicode-bidi
issue from latest Can I Use.v10.4.8
Compare Source
color-adjust
warning ifprint-color-adjust
also is in rule.Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.