DeviaVir / zenbot

Zenbot is a command-line cryptocurrency trading bot using Node.js and MongoDB.
MIT License
8.22k stars 2.04k forks source link

[Snyk] Upgrade css-loader from 5.0.0 to 5.2.6 #2696

Closed snyk-bot closed 3 years ago

snyk-bot commented 3 years ago

Snyk has created this PR to upgrade css-loader from 5.0.0 to 5.2.6.

merge advice :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


Release notes
Package name: css-loader from css-loader GitHub release notes
Commit messages
Package name: css-loader
  • d31c680 chore(release): 5.2.6
  • 075d9bd fix: always write locals export when css modules/icss enabled (#1315)
  • fa9d4c4 chore(release): 5.2.5
  • 0cf8cde fix: compatibility with named export and es5 (#1314)
  • 8f1a6fc chore: `husky` updated (#1312)
  • 417aaba docs: recommend (#1313)
  • ab92c82 chore: removed `camelCase` package from dependencies (#1311)
  • a3ca8c0 chore(deps): update (#1310)
  • bb2a649 docs: clarify behavior of URL option (#1308)
  • 13b7458 chore(release): 5.2.4
  • e913cb1 fix: do not crash on 'false' aliases (#1292)
  • 2388439 chore(release): 5.2.3
  • 911f02d perf: improve (#1290)
  • 4f10583 chore(release): 5.2.2
  • 0722733 fix: avoid escape nonASCII characters in local names
  • 2599438 chore(release): 5.2.1
  • 4f289c5 fix: do not crash on unescaped svg data uri (#1288)
  • dcce860 chore(release): 5.2.0
  • 263427e refactor: code
  • c5062db feat: support async functions for `url` and `import` options (#1277)
  • c86ff94 chore(release): 5.1.4
  • 7095a7c fix: crash with thread-loader (#1281)
  • e194e6b chore(release): 5.1.3
  • 1db2f4d fix: the `auto` option for inline module syntax (#1274)
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs