From 9c23cd58336d30130214c63eecd6b3563a3654e1 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Sun, 8 Oct 2023 04:00:32 +0000 Subject: [PATCH 1/2] build(deps): bump postcss from 8.4.30 to 8.4.31 in /frontend Bumps [postcss](https://github.com/postcss/postcss) from 8.4.30 to 8.4.31. - [Release notes](https://github.com/postcss/postcss/releases) - [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md) - [Commits](https://github.com/postcss/postcss/compare/8.4.30...8.4.31) --- updated-dependencies: - dependency-name: postcss dependency-type: indirect ... Signed-off-by: dependabot[bot] --- frontend/package-lock.json | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/frontend/package-lock.json b/frontend/package-lock.json index 420c4e20..c44e555f 100644 --- a/frontend/package-lock.json +++ b/frontend/package-lock.json @@ -17248,9 +17248,9 @@ } }, "node_modules/postcss": { - "version": "8.4.30", - "resolved": "https://registry.npmjs.org/postcss/-/postcss-8.4.30.tgz", - "integrity": "sha512-7ZEao1g4kd68l97aWG/etQKPKq07us0ieSZ2TnFDk11i0ZfDW2AwKHYU8qv4MZKqN2fdBfg+7q0ES06UA73C1g==", + "version": "8.4.31", + "resolved": "https://registry.npmjs.org/postcss/-/postcss-8.4.31.tgz", + "integrity": "sha512-PS08Iboia9mts/2ygV3eLpY5ghnUcfLV/EXTOW1E2qYxJKGGBUtNjN76FYHnMs36RmARn41bC0AZmn+rR0OVpQ==", "funding": [ { "type": "opencollective", From 478db687503afbba2713db4c522c75a11f32b778 Mon Sep 17 00:00:00 2001 From: Derek Roberts Date: Sun, 8 Oct 2023 18:01:55 -0700 Subject: [PATCH 2/2] Bump vite for postcss dep vulnerability --- frontend/package-lock.json | 8 ++++---- frontend/package.json | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/frontend/package-lock.json b/frontend/package-lock.json index c44e555f..8c532f7e 100644 --- a/frontend/package-lock.json +++ b/frontend/package-lock.json @@ -31,7 +31,7 @@ "redux": "^4.2.1", "redux-devtools-extension": "^2.13.9", "redux-thunk": "^2.4.2", - "vite": "^4.4.9", + "vite": "^4.4.11", "vite-plugin-svgr": "^4.0.0", "vite-tsconfig-paths": "^4.2.0", "web-vitals": "^3.0.0", @@ -19830,9 +19830,9 @@ } }, "node_modules/vite": { - "version": "4.4.9", - "resolved": "https://registry.npmjs.org/vite/-/vite-4.4.9.tgz", - "integrity": "sha512-2mbUn2LlUmNASWwSCNSJ/EG2HuSRTnVNaydp6vMCm5VIqJsjMfbIWtbH2kDuwUVW5mMUKKZvGPX/rqeqVvv1XA==", + "version": "4.4.11", + "resolved": "https://registry.npmjs.org/vite/-/vite-4.4.11.tgz", + "integrity": "sha512-ksNZJlkcU9b0lBwAGZGGaZHCMqHsc8OpgtoYhsQ4/I2v5cnpmmmqe5pM4nv/4Hn6G/2GhTdj0DhZh2e+Er1q5A==", "dependencies": { "esbuild": "^0.18.10", "postcss": "^8.4.27", diff --git a/frontend/package.json b/frontend/package.json index eabec26d..465a25ff 100644 --- a/frontend/package.json +++ b/frontend/package.json @@ -26,7 +26,7 @@ "redux": "^4.2.1", "redux-devtools-extension": "^2.13.9", "redux-thunk": "^2.4.2", - "vite": "^4.4.9", + "vite": "^4.4.11", "vite-plugin-svgr": "^4.0.0", "vite-tsconfig-paths": "^4.2.0", "web-vitals": "^3.0.0",