ReactView
ReactView copied to clipboard
[Snyk] Security upgrade css-loader from 3.6.0 to 4.0.0
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- ViewPacker/tools/package.json
- ViewPacker/tools/package-lock.json
Vulnerabilities that will be fixed
With an upgrade:
Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
---|---|---|---|---|
![]() |
768/1000 Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 7.5 |
Regular Expression Denial of Service (ReDoS) SNYK-JS-SEMVER-3247795 |
Yes | Proof of Concept |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: css-loader
The new version differs by 34 commits.- 7857d8f chore(release): 4.0.0
- 5604205 feat: support `file:` protocol
- 5303db2 chore(deps): update (#1131)
- 9aa0549 chore(deps): update
- a54c955 test: imports
- 5b45d87 test: support in `@ import` at-rule
- 83515fa refactor: code
- 1c20b1e fix: parsing
- 7f49a0a feat: `@ value` supports importing `url()` (#1126)
- 791fff3 refactor: named export (#1125)
- 01e8c76 refactor: change function arguments of the `import` option (#1124)
- c153fe6 refactor: improve schema options (#1123)
- 58b4b98 test: unresolved (#1122)
- d2f6bd2 refactor: getLocalIdent function (#1121)
- 069dbb0 refactor: the `modules.localsConvention` option was renamed to the `modules.exportLocalsConvention` option (#1120)
- fc04401 refactor: the `modules.context` option was renamed to the `modules.localIdentContext` option (#1119)
- 3a96a3d refactor: the `hashPrefix` option was renamed to the `localIdentHashPrefix` option (#1118)
- 0080f88 refactor: default values `modules` and `module.auto` are true (#1117)
- e1c55e4 refactor: rename the `onlyLocals` option (#1116)
- ac5f413 refactor: code
- a5c1b5f test: code coverange (#1114)
- 908ecee refactor: `esModule` option is `true` by default (#1111)
- 7cca035 test: coverange (#1112)
- bc19ddd feat: improve `url()` resolving algorithm
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons: