From 3f97f75d7ed3efa99b27c6b1f07f6562b1220b42 Mon Sep 17 00:00:00 2001 From: Geopopos Date: Sun, 23 Jun 2019 13:20:28 -0400 Subject: [PATCH] Urgent Security Update - updated version of clean-css to 4.2.1. versions of clean css before 4.1.1 are susceptible to ReDoS attacks. --- package.json | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/package.json b/package.json index d02f090..e0bcebf 100644 --- a/package.json +++ b/package.json @@ -41,7 +41,8 @@ "ember-source": "~2.18.0", "eslint-plugin-ember": "^5.0.0", "eslint-plugin-node": "^5.2.1", - "loader.js": "^4.2.3" + "loader.js": "^4.2.3", + "clean-css": "^4.2.1" }, "engines": { "node": "^4.5 || 6.* || >= 7.*"