Skip to content
This repository has been archived by the owner on Jul 24, 2022. It is now read-only.

Bump clean-css from 4.2.4 to 5.3.1 #149

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jul 13, 2022

Bumps clean-css from 4.2.4 to 5.3.1.

Changelog

Sourced from clean-css's changelog.

5.3.1 / 2022-07-13

  • Fixed issue #1218 - double hyphen in at-rule breaks parsing.
  • Fixed issue #1220 - adds optimization for nth-* rules.

5.3.0 / 2022-03-31

  • Adds customizable value optimizers for variables.
  • Fixed issue #1159 - adds optimization for nth-child and nth-of-type.
  • Fixed issue #1181 - CSS level 4 color functions with spaces.
  • Fixed issue #1183 - fraction optimizer breaks image-set.
  • Fixed issue #1208 - handling generic family names.
  • Fixed issue #1210 - handling file:// protocol.

5.2.4 / 2022-01-28

  • Fixed issue #1196 - correctly parse variables & comments mix.

5.2.3 / 2022-01-26

  • Fixed issue #1185 - keeping comments inside variables.
  • Fixed issue #1194 - unexpected end of JSON input when source map is empty.

5.2.2 / 2021-10-21

  • Fixed an unsafe data URI regex, which, when clean-css is used as a service, could be used in a DOS attack.

5.2.1 / 2021-09-30

  • Fixed issue #1186 - bad error handling in batch mode with promises.

5.2.0 / 2021-09-25

  • Fixed issue #1180 - properly handle empty variable values.

5.1.5 / 2021-08-05

  • Fixed issue #1178 - fixes lack of space removal in variable blocks.

5.1.4 / 2021-07-29

... (truncated)

Commits
  • f1047cd Version 5.3.1.
  • 93391d1 Updates changelog for 5.3.1 release.
  • f311d38 Fixes #1218 - double hyphen in at-rule breaks parsing (#1219)
  • 4c1399d Add optimization for nth-last-child and nth-last-of-type (#1220)
  • ba834c6 Version 5.3.0.
  • 3dd762d Updates docs to add information about a new variableValueOptimizers option.
  • d53fecf Adds customizable value optimizers for variables. (#1217)
  • d89424d Adds safer regular expressions to avoid performance issues.
  • 9083e10 Bump path-parse from 1.0.6 to 1.0.7 (#1214)
  • 941f4d8 Bump elliptic from 6.5.3 to 6.5.4 (#1215)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [clean-css](https://github.com/clean-css/clean-css) from 4.2.4 to 5.3.1.
- [Release notes](https://github.com/clean-css/clean-css/releases)
- [Changelog](https://github.com/clean-css/clean-css/blob/master/History.md)
- [Commits](clean-css/clean-css@v4.2.4...v5.3.1)

---
updated-dependencies:
- dependency-name: clean-css
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Jul 13, 2022
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant