bigbluebutton / bbb-playback

GNU Lesser General Public License v3.0
29 stars 40 forks source link

[Snyk] Upgrade sass from 1.53.0 to 1.56.1 #225

Closed jfederico closed 1 year ago

jfederico commented 1 year ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade sass from 1.53.0 to 1.56.1.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **13 versions** ahead of your current version. - The recommended version was released **a month ago**, on 2022-11-09.
Release notes
Package name: sass
  • 1.56.1 - 2022-11-09

    To install Sass 1.56.1, download one of the packages below and add it to your PATH, or see the Sass website for full installation instructions.

    Changes

    Embedded Sass

    • Importer results now validate that contents is actually a string and whether sourceMapUrl is an absolute URL.

    See the full changelog for changes in earlier releases.

      </li>
      <li>
        <b>1.56.0</b> - <a href="https://snyk.io/redirect/github/sass/dart-sass/releases/tag/1.56.0">2022-11-04</a></br><p>To install Sass 1.56.0, download one of the packages below and <a href="https://katiek2.github.io/path-doc/" rel="nofollow">add it to your PATH</a>, or see <a href="https://sass-lang.com/install" rel="nofollow">the Sass website</a> for full installation instructions.</p>

    Changes

    • Potentially breaking change: To match the CSS spec, SassScript expressions beginning with not or ( are no longer supported at the beginning of parenthesized sections of media queries. For example,

      @ media (width >= 500px) and (not (grid))

      will now be emitted unchanged, instead of producing

      @ media (width >= 500px) and (false)

      See the Sass website for details.

    • Potentially breaking bug fix: Angle units like rad or turn are now properly converted to equivalent deg values for hsl(), hsla(), adjust-hue(), color.adjust(), and color.change().

      See the Sass website for details.

    • Fix indentation for selectors that span multiple lines in a @ media query.

    • Emit a deprecation warning when passing $alpha values with units to color.adjust() or color.change(). This will be an error in Dart Sass 2.0.0.

      See the Sass website for details.

    • Emit a deprecation warning when passing a $weight value with no units or with units other than % to color.mix(). This will be an error in Dart Sass 2.0.0.

      See the Sass website for details.

    • Emit a deprecation warning when passing $n values with units to list.nth() or list.set-nth(). This will be an error in Dart Sass 2.0.0.

      See the Sass website for details.

    • Improve existing deprecation warnings to wrap /-as-division suggestions in calc() expressions.

    • Properly mark the warning for passing numbers with units to random() as a deprecation warning.

    • Fix a bug where @ extend could behave unpredicatably when used along with meta.load-css() and shared modules that contained no CSS themselves but loaded CSS from other modules.

    Dart API

    • Emit a deprecation warning when passing a sassIndex with units to Value.sassIndexToListIndex(). This will be an error in Dart Sass 2.0.0.

    JS API

    • Importer results now validate whether contents is actually a string type.

    • Importer result argument errors are now rendered correctly.

    See the full changelog for changes in earlier releases.

      </li>
      <li>
        <b>1.55.0</b> - <a href="https://snyk.io/redirect/github/sass/dart-sass/releases/tag/1.55.0">2022-09-21</a></br><p>To install Sass 1.55.0, download one of the packages below and <a href="https://katiek2.github.io/path-doc/" rel="nofollow">add it to your PATH</a>, or see <a href="https://sass-lang.com/install" rel="nofollow">the Sass website</a> for full installation instructions.</p>

    Changes

    • Potentially breaking bug fix: Sass numbers are now universally stored as 64-bit floating-point numbers, rather than sometimes being stored as integers. This will generally make arithmetic with very large numbers more reliable and more consistent across platforms, but it does mean that numbers between nine quadrillion and nine quintillion will no longer be represented with full accuracy when compiling Sass on the Dart VM.

    • Potentially breaking bug fix: Sass equality is now properly transitive. Two numbers are now considered equal (after doing unit conversions) if they round to the same 1e-11th. Previously, numbers were considered equal if they were within 1e-11 of one another, which led to some circumstances where $a == $b and $b == $c but $a != $b.

    • Potentially breaking bug fix: Various functions in sass:math no longer treat floating-point numbers that are very close (but not identical) to integers as integers. Instead, these functions now follow the floating-point specification exactly. For example, math.pow(0.000000000001, -1) now returns 1000000000000 instead of Infinity.

    • Emit a deprecation warning for $a -$b and $a +$b, since these look like they could be unary operations but they're actually parsed as binary operations. Either explicitly write $a - $b or $a (-$b). See https://sass-lang.com/d/strict-unary for more details.

    Dart API

    • Add an optional argumentName parameter to SassScriptException() to make it easier to throw exceptions associated with particular argument names.

    • Most APIs that previously returned num now return double. All APIs continue to accept num, although in Dart 2.0.0 these APIs will be changed to accept only double.

    JS API

    • Fix a bug in which certain warning spans would not have their properties accessible by the JS API.

    See the full changelog for changes in earlier releases.

      </li>
      <li>
        <b>1.54.9</b> - 2022-09-07
      </li>
      <li>
        <b>1.54.8</b> - 2022-08-31
      </li>
      <li>
        <b>1.54.7</b> - 2022-08-31
      </li>
      <li>
        <b>1.54.6</b> - 2022-08-29
      </li>
      <li>
        <b>1.54.5</b> - 2022-08-19
      </li>
      <li>
        <b>1.54.4</b> - 2022-08-10
      </li>
      <li>
        <b>1.54.3</b> - 2022-08-04
      </li>
      <li>
        <b>1.54.2</b> - 2022-08-03
      </li>
      <li>
        <b>1.54.1</b> - 2022-08-02
      </li>
      <li>
        <b>1.54.0</b> - 2022-07-22
      </li>
      <li>
        <b>1.53.0</b> - 2022-06-22
      </li>
    </ul>
    from <a href="https://snyk.io/redirect/github/sass/dart-sass/releases">sass GitHub release notes</a>

Commit messages
Package name: sass
  • 790eb8a Update CHANGELOG for embedded-host-node fixes (#1828)
  • f3293db JS API: Validate that importer result 'contents' is a `string` and improve ArgumentError output (#1816)
  • 00c3517 Make `cloneCss() clone modules that transitively contain CSS (#1824)
  • 44d6bb6 Add full support for Media Queries 4 (#1822)
  • 558640b Support all angle units in color functions (#1818)
  • dd9e3cc Implement deprecations for strict function units (#1817)
  • 655b55c Indent comma-separated multiline selectors inside @ media queries (#1814)
  • 6e670ef Insert explicit type arguments where types could not be inferred. (#1813)
  • a65e504 Release 1.55.0 (#1806)
  • 103cb19 Consistently use floating-point numbers everywhere (#1802)
  • 90b6190 Add a deprecation warning for strict unary operations (#1800)
  • db1e126 Fix bug in JS MultiSpan (#1801)
  • 5466dd7 Give SassScriptException a name parameter (#1798)
  • e2f9705 Merge pull request #1795 from stof/upgrade_dependencies
  • 0344842 Fix span for not operations (#1797)
  • fb107bd Migrate deprecation warnings to sass-lang short links (#1796)
  • ba2971c Disable the prefer_interpolation_to_compose_strings rule
  • 19ef66f Remove useless ignore rules
  • 8480259 Avoid using private types in public APIs
  • a705445 Avoid null check on potentially nullable type parameter
  • fec9a2a Remove leading underscore on local identifiers
  • 35cd8a7 Remove usage of deprecated member
  • 184dfbf Upgrade dev dependencies to the latest version
  • 5393754 Cut a release (#1793)
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs