-
Notifications
You must be signed in to change notification settings - Fork 75
Closed
Description
Describe the bug
[ moderate ] Regular Expression Denial of Service in postcss
vulnerable versions <8.2.13 found in:
- dependencies: typescript-plugin-css-modules>postcss-filter-plugins>postcss
- dependencies: typescript-plugin-css-modules>postcss-icss-keyframes>postcss
- dependencies: typescript-plugin-css-modules>postcss-icss-keyframes>icss-utils>postcss
- dependencies: typescript-plugin-css-modules>postcss-icss-selectors>postcss
- dependencies: typescript-plugin-css-modules>postcss-icss-selectors>icss-utils>postcss
To Reproduce
execute yarn or npm audit
Expected behavior
A successful audit
Note: I realize that the postcss-filter-plugin/icss-* modules are way out of date that's the underlying cause... maybe there's another package this could move to.
davidspiess, johannessorheim, andykenward, sultanofcardio, eliasnystrom and 24 morearzyu and schmanu
Metadata
Metadata
Assignees
Labels
enhancementNew feature or requestNew feature or request