Bump postcss, postcss-url, rollup-plugin-postcss and typed-css-modules - #568
Open
dependabot[bot] wants to merge 1 commit into
Open
Bump postcss, postcss-url, rollup-plugin-postcss and typed-css-modules#568dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [postcss](https://github.com/postcss/postcss) to 8.5.15 and updates ancestor dependencies [postcss](https://github.com/postcss/postcss), [postcss-url](https://github.com/postcss/postcss-url), [rollup-plugin-postcss](https://github.com/egoist/rollup-plugin-postcss) and [typed-css-modules](https://github.com/Quramy/typed-css-modules). These dependencies need to be updated together. Updates `postcss` from 6.0.1 to 8.5.15 - [Release notes](https://github.com/postcss/postcss/releases) - [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md) - [Commits](postcss/postcss@6.0.1...8.5.15) Updates `postcss-url` from 8.0.0 to 10.1.4 - [Release notes](https://github.com/postcss/postcss-url/releases) - [Changelog](https://github.com/postcss/postcss-url/blob/main/CHANGELOG.md) - [Commits](postcss/postcss-url@8.0.0...10.1.4) Updates `rollup-plugin-postcss` from 2.0.3 to 4.0.2 - [Release notes](https://github.com/egoist/rollup-plugin-postcss/releases) - [Changelog](https://github.com/egoist/rollup-plugin-postcss/blob/master/CHANGELOG-OLD.md) - [Commits](egoist/rollup-plugin-postcss@v2.0.3...v4.0.2) Updates `typed-css-modules` from 0.4.2 to 0.9.1 - [Release notes](https://github.com/Quramy/typed-css-modules/releases) - [Commits](Quramy/typed-css-modules@v0.4.2...v0.9.1) --- updated-dependencies: - dependency-name: postcss dependency-version: 8.5.15 dependency-type: indirect - dependency-name: postcss-url dependency-version: 10.1.4 dependency-type: direct:development - dependency-name: rollup-plugin-postcss dependency-version: 4.0.2 dependency-type: direct:development - dependency-name: typed-css-modules dependency-version: 0.9.1 dependency-type: direct:development ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps postcss to 8.5.15 and updates ancestor dependencies postcss, postcss-url, rollup-plugin-postcss and typed-css-modules. These dependencies need to be updated together.
Updates
postcssfrom 6.0.1 to 8.5.15Release notes
Sourced from postcss's releases.
... (truncated)
Changelog
Sourced from postcss's changelog.
... (truncated)
Commits
eae46dbRelease 8.5.15 version79508ffUpdate CI actionsb128e21Speed up declaration parsing by avoiding creating new array on each token9825dcaFix code format55789c8Update dependencies84fbbe9Install older pnpm action for old Node.js9f860bdRevert pnpm action for old Node.js0877198Update CI actionsb2d1a33Fix linter warnings0700dacMerge pull request #2088 from rootvector2/add-oss-fuzz-harnessUpdates
postcss-urlfrom 8.0.0 to 10.1.4Release notes
Sourced from postcss-url's releases.
Changelog
Sourced from postcss-url's changelog.
Commits
4a729fb10.1.498c9de0Update dev deps & package-lock.jsonff8a5b6Bump minimatch to sort CVEs (#185)c2523fbchore: update changelogfc52c8810.1.36c061a2fix: sync package-lock87db4b7Merge pull request #158 from realityking/mimefdff9b1Upgrade mime to 2.5 againa843ca0Correctly configure save-prefix301e572chore: update changelogUpdates
rollup-plugin-postcssfrom 2.0.3 to 4.0.2Release notes
Sourced from rollup-plugin-postcss's releases.
... (truncated)
Commits
71593d9chore: update ci node versioncaf3429fix: prioritize dart-sass over node-sass (#402)118253efix: update to cssnano 5 (#357)a03c7bfbuild(deps): bump ini from 1.3.5 to 1.3.7 (#344)ceee1bcfeat: upgrade postcss to 8.x375412cchange postcss to 8.x (#343)6480f02chore: upgrade dependencies (#342)700eb14chore: update postcss version to 8 (#325)661c9cachore: Fix typo in comment (#318)3de028dfix: make sourceMaps relative to the CSS output file (#274)Updates
typed-css-modulesfrom 0.4.2 to 0.9.1Release notes
Sourced from typed-css-modules's releases.
... (truncated)
Commits
77206000.9.1ad625f1Merge pull request #291 from jfurfaro/bugfix/arbitrary-extensions-cli4ea496dchore(deps): lock file maintenancefd8bb84actually map the allowArbitraryExtensions cli argument5da4ce8chore(deps): update dependency ts-jest to v29.1.203659d20.9.087b7e0bMerge pull request #277 from jfurfaro/feature/allow-arbitrary-extensions995be2aREADME updatesf0a71a9chore(deps): lock file maintenanceec8b776fix(deps): update dependency postcss-modules-scope to v3.1.1Install script changes
This version adds
preparescript that runs during installation. Review the package contents before updating.Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.