Skip to content

Commit

Permalink
[CVE-2022-25758][CVE-2020-24025] Bump node-sass to 7.0.3 and sass-loa…
Browse files Browse the repository at this point in the history
…der to 10.4.1 in 2.x

Bump node-sass to 7.0.3 and sass-loader to 10.4.1

Issue Resolved:
#1067
#1842

Signed-off-by: Anan Zhuang <ananzh@amazon.com>
  • Loading branch information
ananzh committed Feb 17, 2023
1 parent 29d887e commit c02d4de
Show file tree
Hide file tree
Showing 4 changed files with 89 additions and 103 deletions.
2 changes: 2 additions & 0 deletions package.json
Expand Up @@ -88,6 +88,7 @@
"**/loader-utils": "^2.0.4",
"**/node-jose": "^2.1.0",
"**/nth-check": "^2.0.1",
"**/sass-loader": "^10.4.1",
"**/trim": "^0.0.3",
"**/typescript": "4.0.2",
"**/unset-value": "^2.0.1",
Expand Down Expand Up @@ -190,6 +191,7 @@
"mustache": "^2.3.2",
"node-fetch": "^2.6.7",
"node-forge": "^1.3.0",
"node-sass": "^7.0.3",
"p-map": "^4.0.0",
"pegjs": "0.10.0",
"proxy-from-env": "1.0.0",
Expand Down
1 change: 0 additions & 1 deletion packages/osd-optimizer/package.json
Expand Up @@ -29,7 +29,6 @@
"js-yaml": "^3.14.0",
"json-stable-stringify": "^1.0.1",
"lmdb-store": "^1.6.11",
"node-sass": "^6.0.1",
"normalize-path": "^3.0.0",
"pirates": "^4.0.1",
"postcss": "^8.4.5",
Expand Down
1 change: 0 additions & 1 deletion packages/osd-ui-framework/package.json
Expand Up @@ -30,7 +30,6 @@
"grunt-babel": "^8.0.0",
"grunt-contrib-clean": "^2.0.0",
"grunt-contrib-copy": "^1.0.0",
"node-sass": "^6.0.1",
"postcss": "^8.4.5",
"sinon": "^7.4.2"
}
Expand Down

0 comments on commit c02d4de

Please sign in to comment.