jarrekk / Jalpc

🍎Jalpc -- A flexible Jekyll theme, 3 steps to build your website.
https://jarrekk.github.io/Jalpc/
MIT License
1.02k stars 1.1k forks source link

Bump clean-css from 4.2.4 to 5.3.1 #234

Closed dependabot[bot] closed 1 year ago

dependabot[bot] commented 2 years ago

Bumps clean-css from 4.2.4 to 5.3.1.

Changelog

Sourced from clean-css's changelog.

5.3.1 / 2022-07-13

  • Fixed issue #1218 - double hyphen in at-rule breaks parsing.
  • Fixed issue #1220 - adds optimization for nth-* rules.

5.3.0 / 2022-03-31

  • Adds customizable value optimizers for variables.
  • Fixed issue #1159 - adds optimization for nth-child and nth-of-type.
  • Fixed issue #1181 - CSS level 4 color functions with spaces.
  • Fixed issue #1183 - fraction optimizer breaks image-set.
  • Fixed issue #1208 - handling generic family names.
  • Fixed issue #1210 - handling file:// protocol.

5.2.4 / 2022-01-28

  • Fixed issue #1196 - correctly parse variables & comments mix.

5.2.3 / 2022-01-26

  • Fixed issue #1185 - keeping comments inside variables.
  • Fixed issue #1194 - unexpected end of JSON input when source map is empty.

5.2.2 / 2021-10-21

  • Fixed an unsafe data URI regex, which, when clean-css is used as a service, could be used in a DOS attack.

5.2.1 / 2021-09-30

  • Fixed issue #1186 - bad error handling in batch mode with promises.

5.2.0 / 2021-09-25

  • Fixed issue #1180 - properly handle empty variable values.

5.1.5 / 2021-08-05

  • Fixed issue #1178 - fixes lack of space removal in variable blocks.

5.1.4 / 2021-07-29

... (truncated)

Commits
  • f1047cd Version 5.3.1.
  • 93391d1 Updates changelog for 5.3.1 release.
  • f311d38 Fixes #1218 - double hyphen in at-rule breaks parsing (#1219)
  • 4c1399d Add optimization for nth-last-child and nth-last-of-type (#1220)
  • ba834c6 Version 5.3.0.
  • 3dd762d Updates docs to add information about a new variableValueOptimizers option.
  • d53fecf Adds customizable value optimizers for variables. (#1217)
  • d89424d Adds safer regular expressions to avoid performance issues.
  • 9083e10 Bump path-parse from 1.0.6 to 1.0.7 (#1214)
  • 941f4d8 Bump elliptic from 6.5.3 to 6.5.4 (#1215)
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
dependabot[bot] commented 1 year ago

Superseded by #252.