Skip to content

Commit 92c92f5

Browse files
antonisclaude
andauthored
chore(deps): bump postcss to ^8.5.10 (#6058)
Fixes Dependabot alert for XSS via unescaped </style> in CSS stringify output. Dev-only dependency. https://github.com/getsentry/sentry-react-native/security/dependabot/512 Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>
1 parent ddaa8a1 commit 92c92f5

2 files changed

Lines changed: 14 additions & 13 deletions

File tree

package.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -128,7 +128,8 @@
128128
"plist@npm:3.1.0/@xmldom/xmldom": "^0.8.13",
129129
"@appium/support@npm:7.0.6/yauzl": "^3.2.1",
130130
"appium-ios-remotexpc@npm:0.36.0/@xmldom/xmldom": "^0.9.10",
131-
"appium-ios-simulator@npm:8.0.12/@xmldom/xmldom": "^0.9.10"
131+
"appium-ios-simulator@npm:8.0.12/@xmldom/xmldom": "^0.9.10",
132+
"postcss": "^8.5.10"
132133
},
133134
"version": "0.0.0",
134135
"name": "sentry-react-native",

yarn.lock

Lines changed: 12 additions & 12 deletions
Original file line numberDiff line numberDiff line change
@@ -25500,7 +25500,7 @@ __metadata:
2550025500
languageName: node
2550125501
linkType: hard
2550225502

25503-
"nanoid@npm:^3.1.23, nanoid@npm:^3.3.7":
25503+
"nanoid@npm:^3.1.23":
2550425504
version: 3.3.8
2550525505
resolution: "nanoid@npm:3.3.8"
2550625506
bin:
@@ -27442,14 +27442,14 @@ __metadata:
2744227442
languageName: node
2744327443
linkType: hard
2744427444

27445-
"postcss@npm:^8.1.7, postcss@npm:^8.4.23, postcss@npm:~8.4.32":
27446-
version: 8.4.41
27447-
resolution: "postcss@npm:8.4.41"
27445+
"postcss@npm:^8.5.10":
27446+
version: 8.5.12
27447+
resolution: "postcss@npm:8.5.12"
2744827448
dependencies:
27449-
nanoid: "npm:^3.3.7"
27450-
picocolors: "npm:^1.0.1"
27451-
source-map-js: "npm:^1.2.0"
27452-
checksum: f865894929eb0f7fc2263811cc853c13b1c75103028b3f4f26df777e27b201f1abe21cb4aa4c2e901c80a04f6fb325ee22979688fe55a70e2ea82b0a517d3b6f
27449+
nanoid: ^3.3.11
27450+
picocolors: ^1.1.1
27451+
source-map-js: ^1.2.1
27452+
checksum: e11818908d9f1693438bd7c6e3af99431552f5c9b3f400ebe76af3f25bd1b1efb26bc4c13533f3dcff45540a66ad4e84c62e06491f88003bbfa4ef35b6175f55
2745327453
languageName: node
2745427454
linkType: hard
2745527455

@@ -30807,10 +30807,10 @@ __metadata:
3080730807
languageName: node
3080830808
linkType: hard
3080930809

30810-
"source-map-js@npm:^1.2.0":
30811-
version: 1.2.0
30812-
resolution: "source-map-js@npm:1.2.0"
30813-
checksum: 791a43306d9223792e84293b00458bf102a8946e7188f3db0e4e22d8d530b5f80a4ce468eb5ec0bf585443ad55ebbd630bf379c98db0b1f317fd902500217f97
30810+
"source-map-js@npm:^1.2.1":
30811+
version: 1.2.1
30812+
resolution: "source-map-js@npm:1.2.1"
30813+
checksum: 4eb0cd997cdf228bc253bcaff9340afeb706176e64868ecd20efbe6efea931465f43955612346d6b7318789e5265bdc419bc7669c1cebe3db0eb255f57efa76b
3081430814
languageName: node
3081530815
linkType: hard
3081630816

0 commit comments

Comments
 (0)