From 9d07b59d999cfe883199d2b41b6b0484afee6e51 Mon Sep 17 00:00:00 2001 From: weyusi Date: Thu, 27 Sep 2018 15:33:59 +0930 Subject: [PATCH] Update clean-css to fix ReDoS vulnerability This also update html-minifier which depends on clean-css --- package.json | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/package.json b/package.json index e6002ad..f60d9f6 100644 --- a/package.json +++ b/package.json @@ -8,8 +8,8 @@ }, "dependencies": { "bluebird": "^3.3.5", - "clean-css": ">2.0.0", - "html-minifier": "^2.1.2", + "clean-css": "~4.1.11", + "html-minifier": "~3.5.0", "minimatch": "^3.0.0", "object-assign": "^4.1.0", "stream-to-array": "^2.3.0",