Skip to content

Conversation

@johnmryan
Copy link

Patch version bump to address cssnano/cssnano#1030.

Not sure why this wasn't included in a dependabot PR automatically.

Ran npm i cssnano@4.1.11 to update the dependency to a secure version.

@omgovich
Copy link

omgovich commented May 14, 2021

Hey guys! Sorry for bothering, but the is-svg issue seems pretty important and affects a lot of different projects. It would be cold to update cssnano to get rid of the vulnerability

@NMFR
Copy link
Owner

NMFR commented May 16, 2021

Just updated to a newer version, but thx for the help.

@NMFR NMFR closed this May 16, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants